Static | ZeroBOX

PE Compile Time

2024-11-17 03:32:10

PE Imphash

20773d4ea10b15590a06df441c9fd5be

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x00093b98 0x00093c00 6.95327663519
.rdata 0x00095000 0x00006a44 0x00006c00 5.13310609503
.data 0x0009c000 0x00001c58 0x00001000 4.85846887311
.00cfg 0x0009e000 0x00000008 0x00000200 0.0611628522412
.SUN 0x0009f000 0x00098a7d 0x00098c00 6.86443069894
.reloc 0x00138000 0x00001ae8 0x00001c00 5.83273313526
.POC 0x0013a000 0x0004c800 0x0004c800 7.99943959526
.rsrc 0x00187000 0x000006c8 0x00000800 3.99073342472

Resources

Name Offset Size Language Sub-language File type
RT_VERSION 0x001870a0 0x00000378 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_MANIFEST 0x00187418 0x000002b0 LANG_ENGLISH SUBLANG_ENGLISH_US XML 1.0 document, ASCII text, with CRLF line terminators

Imports

Library KERNEL32.dll:
0x49ad28 CloseHandle
0x49ad2c CompareStringW
0x49ad30 CreateFileA
0x49ad34 CreateFileW
0x49ad38 DecodePointer
0x49ad40 EncodePointer
0x49ad48 ExitProcess
0x49ad4c FindClose
0x49ad50 FindFirstFileExW
0x49ad54 FindNextFileW
0x49ad58 FlushFileBuffers
0x49ad60 FreeLibrary
0x49ad64 GetACP
0x49ad68 GetCPInfo
0x49ad6c GetCommandLineA
0x49ad70 GetCommandLineW
0x49ad74 GetConsoleMode
0x49ad78 GetConsoleOutputCP
0x49ad7c GetCurrentProcess
0x49ad80 GetCurrentProcessId
0x49ad84 GetCurrentThreadId
0x49ad8c GetFileSize
0x49ad90 GetFileSizeEx
0x49ad94 GetFileType
0x49ad98 GetLastError
0x49ad9c GetModuleFileNameW
0x49ada0 GetModuleHandleExW
0x49ada4 GetModuleHandleW
0x49ada8 GetOEMCP
0x49adac GetProcAddress
0x49adb0 GetProcessHeap
0x49adb4 GetStartupInfoW
0x49adb8 GetStdHandle
0x49adbc GetStringTypeW
0x49adc4 HeapAlloc
0x49adc8 HeapFree
0x49adcc HeapReAlloc
0x49add0 HeapSize
0x49add8 InitializeSListHead
0x49addc IsDebuggerPresent
0x49ade4 IsValidCodePage
0x49ade8 LCMapStringW
0x49adf0 LoadLibraryExW
0x49adf4 MultiByteToWideChar
0x49adfc RaiseException
0x49ae00 ReadFile
0x49ae04 RtlUnwind
0x49ae0c SetFilePointerEx
0x49ae10 SetLastError
0x49ae14 SetStdHandle
0x49ae1c TerminateProcess
0x49ae20 TlsAlloc
0x49ae24 TlsFree
0x49ae28 TlsGetValue
0x49ae2c TlsSetValue
0x49ae34 WideCharToMultiByte
0x49ae38 WriteConsoleW
0x49ae3c WriteFile

!This program cannot be run in DOS mode.$
`.rdata
@.data
.00cfg
`.reloc
L;F%!(
D$,0|$
%G[F&!
5t'=LW
+%B$%P
B$%P%x
8T--%G
3[1%jIdy
SR~R=%
=beRZu
J*G@%Da
=P)Kqu
%i_go1
1%$L%F
T$,5\|
JCI%'KGY
t$7 4$
L$8"T$,
l$$2L$
d$'"D$M
%@bBH!
%rl5{1
D$$5`@
}5&!a!
H@%Tw1/
56yP01
d_%a%5g
\Yf5&'i
-9A.%,1
\6JI%:
xG/"%xG/"
@5q+);
\20%M
$ 51nK
L$6"d$4
L$.2L$
L$$#L$
%D"&.!
dn86%4P
dn865}
5t#=LW
=4z"stT=Ba
D$ %f;/
0|)95~#
aLvs%wW5
T$02L$
d$$"|$
}LtH5T
5'@T(!
=PR,)td=
%9NT}1
=[\%-t
D$S9t$8
^!.I%L
%b/x>!
D$x+D$L
$%Enp,
"$$2,$
t/h RI
<ItC<Lt3<Tt#<h
A<lt'<tt
8^8tb9^4~]
QPPPPP
URPQQh rH
M$j"^QRRRRR
M,j"^QRRRRR
Vj0XPW
j"[VWWWW
QQSVWd
uSSSSj
f9:t!V
QQSVj8j@
UQPXY]Y[
PPPPPWV
PP9E uPPSWP
PVVVVV
^PQQQQQ
E ^PQQQQ
CY<u
PPPPPPPP
PVVVVV
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
[aOni*{
~ $s%r
@b;zO]
v2!L.2
?5Wg4p
%S#[k=
"B <1=
Unknown exception
bad array new length
string too long
dddd, MMMM dd, yyyy
MM/dd/yy
February
January
Thursday
Tuesday
Wednesday
Saturday
Sunday
Monday
Friday
InitializeCriticalSectionEx
LCMapStringEx
CompareStringEx
August
_hypot
operator co_await
__restrict
CorExitProcess
HH:mm:ss
operator
_nextafter
October
November
September
December
bad exception
bad allocation
__fastcall
__thiscall
__vectorcall
__clrcall
__stdcall
__cdecl
__pascal
__eabi
FlsSetValue
FlsGetValue
delete
FlsFree
AppPolicyGetProcessTerminationMethod
__unaligned
FlsAlloc
new[]
delete[]
1#SNAN
1#QNAN
AreFileApisANSI
LocaleNameToLCID
operator<=>
__ptr64
__swift_3
__swift_2
__swift_1
nan(snan)
(null)
nan(ind)
NAN(SNAN)
NAN(IND)
restrict(
__based(
Base Class Descriptor at (
Base Class Array'
Class Hierarchy Descriptor'
Type Descriptor'
`vector deleting destructor'
`scalar deleting destructor'
`vbase destructor'
`vector copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`eh vector vbase copy constructor iterator'
`vector constructor iterator'
`eh vector constructor iterator'
`managed vector constructor iterator'
`vector vbase constructor iterator'
`eh vector vbase constructor iterator'
`vector destructor iterator'
`eh vector destructor iterator'
`managed vector destructor iterator'
Complete Object Locator'
`virtual displacement map'
`vcall'
`string'
`udt returning'
`omni callsig'
`typeof'
`copy constructor closure'
`default constructor closure'
`local vftable constructor closure'
`placement delete closure'
`placement delete[] closure'
`vftable'
`local vftable'
`vbtable'
`anonymous namespace'
`local static thread guard'
`local static guard'
`dynamic atexit destructor for '
`dynamic initializer for '
operator ""
CloseHandle
CompareStringW
CreateFileA
CreateFileW
DecodePointer
DeleteCriticalSection
EncodePointer
EnterCriticalSection
ExitProcess
FindClose
FindFirstFileExW
FindNextFileW
FlushFileBuffers
FreeEnvironmentStringsW
FreeLibrary
GetACP
GetCPInfo
GetCommandLineA
GetCommandLineW
GetConsoleMode
GetConsoleOutputCP
GetCurrentProcess
GetCurrentProcessId
GetCurrentThreadId
GetEnvironmentStringsW
GetFileSize
GetFileSizeEx
GetFileType
GetLastError
GetModuleFileNameW
GetModuleHandleExW
GetModuleHandleW
GetOEMCP
GetProcAddress
GetProcessHeap
GetStartupInfoW
GetStdHandle
GetStringTypeW
GetSystemTimeAsFileTime
HeapAlloc
HeapFree
HeapReAlloc
HeapSize
InitializeCriticalSectionAndSpinCount
InitializeSListHead
IsDebuggerPresent
IsProcessorFeaturePresent
IsValidCodePage
LCMapStringW
LeaveCriticalSection
LoadLibraryExW
MultiByteToWideChar
QueryPerformanceCounter
RaiseException
ReadFile
RtlUnwind
SetEnvironmentVariableW
SetFilePointerEx
SetLastError
SetStdHandle
SetUnhandledExceptionFilter
TerminateProcess
TlsAlloc
TlsFree
TlsGetValue
TlsSetValue
UnhandledExceptionFilter
WideCharToMultiByte
WriteConsoleW
WriteFile
KERNEL32.dll
6D,i`M
'W( >O
.?AVbad_array_new_length@std@@
.?AVbad_alloc@std@@
.?AVexception@std@@
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
.?AVlogic_error@std@@
.?AVlength_error@std@@
.?AVbad_exception@std@@
.?AVtype_info@@
oiy\%X(a
5R(Wd!
$%@d`1
@`%p(Nc
59}%'K
5;0%`%;0
T$@#D$
u2L(%8{
l$$!|$$1
x|ts%@
g5JMck
|$ |$
5Q'71!
n%G&X2
Ic=%P$
5cUx,!
&%v=5#Vn,
zgud%r
D@ %8)
EP,%d@
X%35e.
q5[mg,!
l-'5)F
8vmf%H
$5MA}5
WE+D$|)
\$(%$s
IR%9)
UL%K3,$
sX=%hnM
5H`A0%Yt
d$9"d$
rSl95n*
D5AHH(
%.a|(1
,$%}yM
P5yBsg
D$42d$4
t$(#L$
7AV3%%N
HW&^57
D$C2D$
%EP'7
w]%}O0O
X%G091
5(im{1
@(eR%@(eR
Q%TVZ1
'Qz=)f
Qq1%1}:
JE@M54
%J,H$!
%2C$*1
a@%3t]
t$H%+h
@ %5N-
5ao&&!
B!R%c-
X4c45?
<6<A<\<h<
>1?P?j?
0#0,01070A0K0[0k0{0
2L2D3V3o3
55%5}5
9:9D9M9
:C:M:V:_:t:}:
40G0e0s0!2X2_2d2h2l2p2
8(8F8Y8i8}8
9#9:9]9
:$:7:>:G:\:I;g;
<,=a=w>~>
9\9c9u9
:!:0:D:M:e:l:x:
4K4R4v4
>%>L>V>d>
2!3*3M3_3k3
4(484=4B4]4l4w4|4
5#535l5
5#6<6J6V6b6v6
6%7=7M7[7`7e7u7z7
7%838:8@8[8b8r8y8
9&9T9c9u9
: :-:Q:X:w:
;#;J;_;o;|;
>G?W?z?
0Y1r1{1
4S4b4l4y4
6!7@7c7
=2=P=Y=_=
1[2a2~2
3a4'5-5a5l5
7B8Z8_8
;+;=;O;a;s;
6[8A95:\:t:
;;);6<w<
6K7Q7_7n7
:]:l:z:
=-=7=C=H=M=h=r=~=
>#>?>U>}>
2"373A3
7&7@7O7
<+<R<s<
4)4o;w;
9&969o9
9$:*:B:r;
3D3h3s3
2"24292y2
2!3-3A3M3Y3y3
44+4:4M5~5
9&9{9|:
:-;8;>;G;
<#<l<u<~<
;+;H;r;
0,000@0D0H0L0`0x0
1,1014181<1@1D1H1L1P1T1X1
2 2(20282<2@2D2H2L2P2T2\2`2d2h2l2p2t2x2
2H4P4X4`4h4p4x4
5 5(50585@5H5P5X5`5h5p5x5
6 6(60686@6H6P6X6`6h6p6x6
7 7(70787@7H7P7X7`7h7p7x7
8 8$8p8t8x8|8
9 9$9(94989<9@9D9H9L9P9T9X9\9`9d9h9l9p9t9x9|9
9P;T;X;\;`;d;h;l;p;t;x;|;
2$2,242<2D2L2T2\2d2l2t2|2
3$3,343<3D3L3T3\3d3l3t3|3
4$4,444<4D4L4T4\4d4l4t4|4
5$5,545<5D5L5T5\5d5l5t5|5
6$6,646<6D6L6T6\6d6l6t6|6
7$7,747<7D7L7T7\7d7l7t7|7
8$8,848<8D8L8T8\8d8l8t8|8
9 9(90989@9H9P9X9`9h9p9x9
: :(:0:8:@:H:P:X:`:h:p:x:
; ;(;0;8;@;H;P;X;`;h;p;x;
< <(<0<8<@<H<P<X<`<h<p<x<
= =(=0=8=@=H=P=X=`=h=p=x=
> >(>0>8>@>H>P>X>`>h>p>x>
? ?(?0?8?@?H?P?X?`?h?p?x?
5$5,545<5D5L5T5\5
6,6064686@6X6h6l6|6
4 4(40484<4@4H4\4t4x4
5D5H5h5
6 6,6`6|6
7 7@7`7
8 8@8`8
9 9$9@9H9L9\9
50<`<p<
= =$=0=4=8=<=@=D=H=L=
9 9X9c9
w324h4
;<0JHmxs
nfK5Pl0*
btxCN&
\XcQ6%5]t%
{?!9N-d
B4ku]f
WL<.~)J
HAd1H0
ECdaVM
S<SyGN
-(:,O_
|,r-6
#}m0SpN
;dv.Ij<
|zlifo
5F<*O'Am
}f[Nif
3}/?;<
$:}n6rIo
KZH02Gk
`%FxIB;_B
P!wgrl
fJmWv#
4B4rd7'|
dCvdN$
hoS3z0N
\";iiS3
5G0SF@
5Nlp8O
AvwE5'
?<0yp
"%\K!g
eD<x;9
i;TJEo
+ew[n `f
NoNtK^
(Z'Sqr
ZY{F"}
ym!bASb
h5CN#C$
-/FmToy
j>ntfhk
Qs1Oxj
o@eVWd
:@;6[/
K+X1t[8
1TGf`,
'DLO%W
N]k`?s
5_Nr6JY
tyB+Mh
ft*R5q>
m^4CiS
aomt
_4EYR:\
.yiz(O
K-213'
`(3eiTH
;i$*4u
H\UMrE
Cndrcg
>yd3XC
AB.F#w
1ObURXRz(
1.<hR"
HALGN$
'qe@RB
F}<ZZt
nY3#F
Ve//Il
I'vhW<
/`\27#
loU3\O
/({hv1
0Q]` C
~\&S{C
5]w_Qc1@
p"Ro7S
b[?zj
ij^)wQ
Unxc`r[8]
`QDMtC~Tcg
Ez@6ai1+
=~q Y1,v4
'|[*vc
FpGGnl
4'i.RUl
Ty44Cm
Rl%zL4
:Sez|
K5ch^==P
2tN~_u2q
]5()Jx
\I9o5q
@P(bx_
%63&}A
<TT7tg
}-DauD:
FtL-C%{
"X:z"
xi]w2R-
U$>rZN
kA0HK]
.bBI|n
U< foV
###(>~o
@n81'u%
rk&C"{
?V!n_[
urY<R<Y
l_\.};
n/j*pyK
BI>AI28
<:/|?6
i>2GCF
L,j\Z
-D0qr(
fR}e0E[
nWx@s|
BI}yDuS
B&<S7=
<T]4YO
\yByTQ
pC$j
=!.{EN^
_(mOLz
stx0.]
;j`1D3
6z ][N
swxGdL{
t8%7S"
/,.Dtb
wzBZB=1.{*X
$`J*$R
m_h|^k
@}c&iM]
^$i8xjS
"5qQXA
qypTBZqx
n3Gh4]Ks
0b\<""g
\D_|/,
uavM)pk
NR(-'^h
&'M5x
~hyR1P
s42}C#cy
OmE~)*m
1_0e}ip
2!-Du?
oKk^[D
|NGF1[xrLgt
p\4y)E
EJ-F!x/-
Ru_A[z|
`AuT.1
CtZrA&@
)[&(YC
2G~vXqq
$yzzW`
*YM/WS
&Pd>/B
L1QDwddO
Fu7faBo
!A%'-VH
{yax2~
Z&)(h?
(X3R.)
BO!Y,+
5IXE`c
lEHyHPFl4]
\](|Ew
N!>.ST
u7,Hv,B
W1h2uk
[H's?,
JbYaxj^
s#QkIg
<7]u@~a
e/#Xtsr
RXiNe_H
/N|DE:
uE{)$c
8-%E72
{X#V"K
T~;fP'
,rP6If
_;&wT
.QgLP
oEca .
7bJ('
>FfOLr
J1-^$<
dHM,`|C
n >y7l
$j{xQc
292KB6@
]m-Zzc
u_U_({
H9Fnv
.IP;!R
NzBG^X
ixPw"E
`' B1hW[G
_wK70l}p
M`/T}4!
a-6t\=iu
bp">0}~=
Q~4>t+n
N1'u79
w`dH;l}
7"]#)(
Bnv72
8G%?@VDI
*&O2:&
,$FQF{!e
:15$X=38
?1@E+'?o`
~&VQ#)QYAx%(
a\MuG/q?
vqIx}g
uJp![J
b.^Y8)
cMEux`
b\"r Q
-Lh$RZ
HIVb1\r
'S{gb`a
`Y#cL]F6c
"@il\q
+G=4Mw
T"CPaA
>h]oMni
w.<;Py
;r::8h
a4])8^CCt
;u~fXxy
m>G$B>
^X=nBBZ
jN}d%Rm
bB2JsK
JG=70k$
8L@hgI
z:uB5x
(*`Gr <
r !"M|
el?U81
a0(K~B_"c
.<GgYi
{)V,{&2
>=6@nR
OOHp>n
Wz$:G
)ybzz]P
|R0T*&
o?G)0E
=I2) Y
o:yNVj
d<<DoW
1>E)j|
\MjK>j
v-wDQ:
elqW1G
guUZ7&C
[4!U\X
XL_x3Z
<+gfa.O
|jZ)J}n
oBsq~&
;IArrD
iBg;!X
.cMl?d3
y3Wm^Yl
HG~md5
? cW=|
#S|Bmv$
%*wZMR
6b&I41
@r"U`#
\h3<S[
LxP~%q##
_MFQSf2
Dx'Qz|
^S>vp8
MD1zx:
~w~U5~
_TDENf~]
A]n&arS
S@to?`
v\;<`7
eN^>9"U-_q^a.h
b[*z9T
U-4kgj"8
M<:wHH
LY>15b
&V!BK
OsjxgNZ
9_}d"<
\15b!x
hXRx+K
%o&a+z(m
P- M8t\
5`ofc4z
l4.:_Ed
@qVLii
U$!SOT
Bg[oQL
P'IK"4Y
(oebRB
bM'd<m
;2Q%!F
K{YkZ%
mJ?H2%
61+*kY
7tT-2x
9`Ke1g
Z+Q*1q
e]\@VT
i++A-@$
Y:8Dbt
#7;Cdq
X)`r](
>_%B'
DVxqwp
dwlHdbz
QobO]G
mZC[B?vm
_7,qP.
eXn>>S
qy[Yz
T*h235
&oR7d2p:%
y&:+&
veojU3
bGw~!6g
+%Jdq?Z
XHsPik
57=32h
x^'O<r@
v^@tV,
lB)KK)n
5PCuQw
9+w6d1
E<Hh}6
`>.]*
$C _4,p_
<'H@q/<
%EP<W``
#LQc3%
&tZc]P
?!Um8`[
I3!b6bo
zfU'\VvL
}yc~|/
TB\*dS
`AM<Nr
MQbB}H
-%>7\6
$2[rpHf
fy!.n-<iV
%eBUj8
g]AB#R
U9z'}>
jUK`8Y
1Ote4}^
n;>>yI
Rx%?^}
r]Eu/!
!_@;Gr
Srj#43W
$J\.%~
GI*t?I
6l9B\D\
3Ca23Sv
E).$L~
LT}k#e
i}IqzC\Z
}S1HVo9Y
giLihN!
oZ(6f+
nN*KMpJ
1]ky%v#D
On\.>`
<<~WCa
q[~pU
]$UIa
:Hv<UqY
4U~nG{
~E&?pt
VO*/*R
Y}kXYj
]GEG?,mufzP
/d cNQ
3-X--G
kp0R
OxH< c
jK0:e7\
llnTdh
7twWA^
/SS9iG
u@=uL&
NYN?RF
g~a%,<s
^9|N?%
i/*$BI
Vnnf{D
dnE:E.
69)J)&?a(
=>0/3
AOuMr
uArx2!
v9.q8RH!
?7rI\|D
R[Jx::!
qugl\5
Ow.`H7
@ta:|k
0?er"
z<^+cqr
s8>F$W
(8QdxEERH>
9CJIMk
>C4u@]K&
Z7/%DO
Lkw0t~
d34@7!.
|IQ;tz
JR}FAQ
-~A#"T[r
5g%y9]D
PEw[H#
3Yi?F%
Hujeo
Y#B5O&
.1uRLJ}
UkDY)]
@Zbh5NE
B,-@wi
mQ2tcW
^h9iIg
bxo64P
?Bk*Ee
F5?_~-
vN\Tn*
e8^&^UI
.(HTo$
y5)X.0
_rAEt8
hz){q8o
cA~m>
d2Na&h5
gE(R[(QPH
?G1`d10
S%$=(]
v& x{$
[AXv"~f
7@&AmB
A |kWELvYRD
sIL{jO
v`G]N"
Oof(VL
8{6GOxx
hVVJHi
+rGs6N
j#neG.*
sg}m((d
Z$RQbG
.RJ^0p
YyX"x,*1
)8\@h/
'5NYdgw:
lhUa;F
Ebk!#|
//`+:$
@]wKxOA
N`vE!e'
l0E`$a
uYKC..p
wTp;M
!:k4wY
Y2()j;
9P10~6f
xakR;eo
Jy3V1H
qkJ&_z
ck1jqKo<
D4,3D/ Y
4E='V@
}ZBn7>+
K\]c&-xn
UD84IY
eU[,$i
3Clz Q`DlR
$:0@`:
%?s)5c;
!7/$B(
692e78
"-5C]B
;wTZzf
m3[xoF
N+$)]
ZYFJU=
fu:U+U3
XkFf46
)Kb*j5aT
W+~JE
t\xD,K
=N)]~t
i2^P=q
i)A<p[
wU8|Nk
i)0Cgj~
d]!OuN
W(|Ul',,
s> A"`
T3fT*r
O,cv[J)qn
)H-W7d
a D3LmP
8#}J$/
<H",}m)
E4%M1-
D>AyF3+
E|&t16
F>M--`
FwHUw{
Yk_SZY
+]uaRB
pU2u2ek
$9|abK
nV;b'C
+A9}yQNBo=
RW27r6
3)ocbx
+n2<1B
qI,XRw
QX>GAV
]:,7w
XS"J[0%&
vir+JM
[XT>"I
W-rY@q
W}$i6U
Ox+]{5
v.STqi<
za&|0a)
<?xml version="1.0" encoding="UTF-8" standalone="yes"?>
<!-- Copyright (c) Microsoft Corporation -->
<assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0">
<assemblyIdentity
version="5.1.0.0"
processorArchitecture="x86"
name="Microsoft.Windows.Reliability.Reagent"
type="win32"
<description>Microsoft Windows Recovery Agent</description>
<trustInfo xmlns="urn:schemas-microsoft-com:asm.v3">
<security>
<requestedPrivileges>
<requestedExecutionLevel
level="asInvoker"
uiAccess="false"
/>
</requestedPrivileges>
</security>
</trustInfo>
</assembly>
((((( H
dddd, MMMM dd, yyyy
MM/dd/yy
syr-sy
February
January
Thursday
Tuesday
Wednesday
Saturday
Sunday
Monday
Friday
div-mv
August
zh-cht
HH:mm:ss
zh-chs
October
November
September
December
smj-no
sma-no
quz-bo
uz-uz-latn
az-az-latn
sr-sp-latn
bs-ba-latn
sr-ba-latn
uz-UZ-Latn
az-AZ-Latn
sr-SP-Latn
bs-BA-Latn
sr-BA-Latn
kok-in
uz-uz-cyrl
az-az-cyrl
sr-sp-cyrl
sr-ba-cyrl
uz-UZ-Cyrl
az-AZ-Cyrl
sr-SP-Cyrl
sr-BA-Cyrl
mscoree.dll
sms-fi
smn-fi
kernelbase
smj-se
sma-se
quz-pe
quz-ec
syr-SY
div-MV
zh-CHT
zh-CHS
smj-NO
sma-NO
quz-BO
kok-IN
sms-FI
smn-FI
smj-SE
sma-SE
quz-PE
quz-EC
api-ms-win-core-file-l1-2-4
user32
kernel32
advapi32
api-ms-win-core-file-l1-2-2
api-ms-win-core-sysinfo-l1-2-1
api-ms-win-core-fibers-l1-1-1
api-ms-win-core-synch-l1-2-0
api-ms-win-core-xstate-l2-1-0
api-ms-win-core-winrt-l1-1-0
api-ms-win-core-fibers-l1-1-0
api-ms-win-core-string-l1-1-0
ext-ms-
api-ms-
(null)
CONOUT$
api-ms-win-core-processthreads-l1-1-2
api-ms-win-appmodel-runtime-l1-1-2
api-ms-win-core-localization-l1-2-1
api-ms-win-core-datetime-l1-1-1
api-ms-win-core-localization-obsolete-l1-2-0
ext-ms-win-ntuser-dialogbox-l1-1-0
api-ms-win-rtcore-ntuser-window-l1-1-0
api-ms-win-security-systemfunctions-l1-1-0
ext-ms-win-ntuser-windowstation-l1-1-0
VS_VERSION_INFO
StringFileInfo
040904B0
CompanyName
Microsoft Corporation
FileDescription
Print Utility
FileVersion
10.0.19041.3636 (WinBuild.160101.0800)
InternalName
LegalCopyright
Microsoft Corporation. All rights reserved.
OriginalFilename
Print.Exe
ProductName
Microsoft
Windows
Operating System
ProductVersion
10.0.19041.3636
VarFileInfo
Translation
Antivirus Signature
Bkav W32.AIDetectMalware
Lionic Trojan.Win32.Stealerc.1m!c
Elastic malicious (high confidence)
ClamAV Clean
CMC Clean
CAT-QuickHeal Clean
Skyhigh BehavesLike.Win32.VirusWinExpiro.tc
McAfee Artemis!6E1ED6447607
Cylance Unsafe
Zillya Clean
Sangfor Trojan.Win32.Save.a
CrowdStrike win/malicious_confidence_100% (W)
Alibaba Clean
K7GW Clean
K7AntiVirus Clean
huorong Clean
Baidu Clean
VirIT Clean
Paloalto Clean
Symantec ML.Attribute.HighConfidence
tehtris Clean
ESET-NOD32 a variant of Win32/GenKryptik.HDXO
APEX Malicious
Avast FileRepMalware [Trj]
Cynet Clean
Kaspersky UDS:Trojan.Win32.Stelpak.gen
BitDefender Gen:Variant.Lazy.625544
NANO-Antivirus Clean
ViRobot Clean
MicroWorld-eScan Gen:Variant.Lazy.625544
Tencent Win32.Trojan.Genkryptik.Iflw
Sophos Mal/Generic-S
F-Secure Clean
DrWeb Clean
VIPRE Clean
TrendMicro Clean
McAfeeD ti!A69C11CA0CDB
Trapmine Clean
CTX exe.trojan.stealerc
Emsisoft Gen:Variant.Lazy.625544 (B)
Ikarus Clean
FireEye Generic.mg.6e1ed6447607ab4c
Jiangmin Clean
Webroot Clean
Varist Clean
Avira Clean
Fortinet Clean
Antiy-AVL Trojan[PSW]/Win32.StealerC
Kingsoft Win32.Trojan-PSW.Stealerc.gen
Gridinsoft Clean
Xcitium Clean
Arcabit Clean
SUPERAntiSpyware Clean
ZoneAlarm UDS:Trojan.Win32.Stelpak.gen
Microsoft Trojan:Win32/Caynamer.A!ml
Google Clean
AhnLab-V3 Clean
Acronis Clean
VBA32 Clean
TACHYON Clean
Malwarebytes Malware.AI.3679817882
Panda Clean
Zoner Clean
TrendMicro-HouseCall Clean
Rising Stealer.Stealerc!8.17BE0 (CLOUD)
Yandex Clean
SentinelOne Static AI - Malicious PE
MaxSecure Clean
GData Gen:Variant.Lazy.625544
AVG FileRepMalware [Trj]
DeepInstinct MALICIOUS
alibabacloud Clean
No IRMA results available.