Static | ZeroBOX

PE Compile Time

2024-11-14 00:31:25

PE Imphash

ace62586a99cd94b3404d807008ae88e

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x0021cc8c 0x0021ce00 6.02915847492
.rdata 0x0021e000 0x00006ba4 0x00006c00 5.15042120124
.data 0x00225000 0x00001d8c 0x00001000 4.83397421752
.00cfg 0x00227000 0x00000008 0x00000200 0.0611628522412
.reloc 0x00228000 0x0000309c 0x00003200 5.94792521459
.TON 0x0022c000 0x0004b200 0x0004b200 7.9994393229
.TON 0x00278000 0x0004b200 0x0004b200 7.9994393229

Imports

Library USER32.dll:
Library KERNEL32.dll:
0x623d80 CloseHandle
0x623d84 CompareStringW
0x623d88 CreateFileW
0x623d8c DecodePointer
0x623d94 EncodePointer
0x623d9c ExitProcess
0x623da0 FindClose
0x623da4 FindFirstFileExW
0x623da8 FindNextFileW
0x623dac FlushFileBuffers
0x623db4 FreeLibrary
0x623db8 GetACP
0x623dbc GetCPInfo
0x623dc0 GetCommandLineA
0x623dc4 GetCommandLineW
0x623dc8 GetConsoleMode
0x623dcc GetConsoleOutputCP
0x623dd0 GetCurrentProcess
0x623dd4 GetCurrentProcessId
0x623dd8 GetCurrentThreadId
0x623de0 GetFileSizeEx
0x623de4 GetFileType
0x623de8 GetLastError
0x623dec GetModuleFileNameW
0x623df0 GetModuleHandleExW
0x623df4 GetModuleHandleW
0x623df8 GetOEMCP
0x623dfc GetProcAddress
0x623e00 GetProcessHeap
0x623e04 GetStartupInfoW
0x623e08 GetStdHandle
0x623e0c GetStringTypeW
0x623e14 HeapAlloc
0x623e18 HeapFree
0x623e1c HeapReAlloc
0x623e20 HeapSize
0x623e28 InitializeSListHead
0x623e2c IsDebuggerPresent
0x623e34 IsValidCodePage
0x623e38 LCMapStringW
0x623e40 LoadLibraryExW
0x623e44 MultiByteToWideChar
0x623e4c RaiseException
0x623e50 ReadConsoleW
0x623e54 ReadFile
0x623e58 RtlUnwind
0x623e5c SetEndOfFile
0x623e64 SetFilePointerEx
0x623e68 SetLastError
0x623e6c SetStdHandle
0x623e74 TerminateProcess
0x623e78 TlsAlloc
0x623e7c TlsFree
0x623e80 TlsGetValue
0x623e84 TlsSetValue
0x623e8c WideCharToMultiByte
0x623e90 WriteConsoleW
0x623e94 WriteFile

!This program cannot be run in DOS mode.$
`.rdata
@.data
.00cfg
@.reloc
uXc_-6
hZ-jN1
-5)>N-
5)>N-S?
-FCjG)
\^%stH
5WBnR%atkF
5WBnR%
-ZHi~-
-vZnz)
CG-o#4
-}f!;-
]s"%gU
f{-RNZ
-=:%v-
7-N}o6
-B2<v
yKV%5]
d/+-AZ
J-\Ew~)
}-jQ<&
-jQ<&-S
^f-t`
u"hpfb
<ItC<Lt3<Tt#<h
A<lt'<tt
8^8tb9^4~]
PWWWWW
PVVVVV
URPQQh
M$j"^QRRRRR
M,j"^QRRRRR
Vj0XPW
j"[VWWWW
u#Vh4mb
QQSVWd
uSSSSj
f9:t!V
QQSVj8j@
<at.<rt!<wt
<=upG8
D8(Ht5F
D8(Ht'
D8(HtU
PVVVVV
UQPXY]Y[
PPPPPWV
PP9E uPPSWP
PVVVVV
^PQQQQQ
E ^PQQQQ
CY<u
PPPPPPPP
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
UTF-16LEUNICODE
[aOni*{
~ $s%r
@b;zO]
v2!L.2
?5Wg4p
%S#[k=
"B <1=
Unknown exception
bad array new length
vector too long
string too long
dddd, MMMM dd, yyyy
MM/dd/yy
February
January
Thursday
Tuesday
Wednesday
Saturday
Sunday
Monday
Friday
InitializeCriticalSectionEx
LCMapStringEx
CompareStringEx
August
_hypot
operator co_await
__restrict
CorExitProcess
HH:mm:ss
operator
_nextafter
October
November
September
December
bad exception
bad allocation
__fastcall
__thiscall
__vectorcall
__clrcall
__stdcall
__cdecl
__pascal
__eabi
FlsSetValue
FlsGetValue
delete
FlsFree
AppPolicyGetProcessTerminationMethod
__unaligned
FlsAlloc
new[]
delete[]
1#SNAN
1#QNAN
AreFileApisANSI
LocaleNameToLCID
operator<=>
__ptr64
__swift_3
__swift_2
__swift_1
nan(snan)
(null)
nan(ind)
NAN(SNAN)
NAN(IND)
restrict(
__based(
Base Class Descriptor at (
Base Class Array'
Class Hierarchy Descriptor'
Type Descriptor'
`vector deleting destructor'
`scalar deleting destructor'
`vbase destructor'
`vector copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`eh vector vbase copy constructor iterator'
`vector constructor iterator'
`eh vector constructor iterator'
`managed vector constructor iterator'
`vector vbase constructor iterator'
`eh vector vbase constructor iterator'
`vector destructor iterator'
`eh vector destructor iterator'
`managed vector destructor iterator'
Complete Object Locator'
`virtual displacement map'
`vcall'
`string'
`udt returning'
`omni callsig'
`typeof'
`copy constructor closure'
`default constructor closure'
`local vftable constructor closure'
`placement delete closure'
`placement delete[] closure'
`vftable'
`local vftable'
`vbtable'
`anonymous namespace'
`local static thread guard'
`local static guard'
`dynamic atexit destructor for '
`dynamic initializer for '
operator ""
IsClipboardFormatAvailable
CloseHandle
CompareStringW
CreateFileW
DecodePointer
DeleteCriticalSection
EncodePointer
EnterCriticalSection
ExitProcess
FindClose
FindFirstFileExW
FindNextFileW
FlushFileBuffers
FreeEnvironmentStringsW
FreeLibrary
GetACP
GetCPInfo
GetCommandLineA
GetCommandLineW
GetConsoleMode
GetConsoleOutputCP
GetCurrentProcess
GetCurrentProcessId
GetCurrentThreadId
GetEnvironmentStringsW
GetFileSizeEx
GetFileType
GetLastError
GetModuleFileNameW
GetModuleHandleExW
GetModuleHandleW
GetOEMCP
GetProcAddress
GetProcessHeap
GetStartupInfoW
GetStdHandle
GetStringTypeW
GetSystemTimeAsFileTime
HeapAlloc
HeapFree
HeapReAlloc
HeapSize
InitializeCriticalSectionAndSpinCount
InitializeSListHead
IsDebuggerPresent
IsProcessorFeaturePresent
IsValidCodePage
LCMapStringW
LeaveCriticalSection
LoadLibraryExW
MultiByteToWideChar
QueryPerformanceCounter
RaiseException
ReadConsoleW
ReadFile
RtlUnwind
SetEndOfFile
SetEnvironmentVariableW
SetFilePointerEx
SetLastError
SetStdHandle
SetUnhandledExceptionFilter
TerminateProcess
TlsAlloc
TlsFree
TlsGetValue
TlsSetValue
UnhandledExceptionFilter
WideCharToMultiByte
WriteConsoleW
WriteFile
USER32.dll
KERNEL32.dll
P~QP-C
|c<*Sf
d55KVy
.?AVbad_array_new_length@std@@
.?AVbad_alloc@std@@
.?AVexception@std@@
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
.?AVlogic_error@std@@
.?AVlength_error@std@@
.?AVbad_exception@std@@
.?AVtype_info@@
p2v2{6
4)7/7-929
U2[2R6X6
< =+=1=
3!3i;o;
Y4_4q8w8
2k7q7=;C;
9%=+=F>L>
t5z5N8T8
3@4K4Q4
;;(;1;h;y;
`3f3q7w7
o6u6`:f:
357;7p;v;
Z4`4p7v7
676q6|6
&51575
\;b;P>V>
0P5[5a5
126[6a6
73:>:D:9=?=
5&8,8#<)<
m5x5~5<8B8
C<N<T<
7L;R;m>s>
#=.=4=
9s;y;I>O>
]0c0&?,?
:9@9U;[;
7(;.;X=^=
4K6Q6-838
2@3K3Q3
w4}4M9S9
C2N2T2
1C1N1T1
@2K2Q2
7#<)<_>e>
00,424
1#5.545
c<n<t<
k0q0[<a<
0?=E=@?K?Q?
P0V0g2m2
41:1@6K6Q6<9B9p;v;Q?W?
3`>k>q>
"<(<!>'>
7J<P<W?]?
=@>K>Q>
0W2]2T5Z5
: :n>t>
T:A;G;
V9a9g9
i0o0@:F:
==Y?_?
E7K7];c;
`8k8q8t=z=
5"587>7
g1m1E<K<
1j3p3e6k6
]7c7c;n;t;0?6?
3<5B5F9L9
09;9A9
-131U=[=
88>8@<F<
%7+7x9~9
l4r4W6]6
Q6W6t8z8
99<?<q?w?
1&6,6#:):
)040:0C<I<
V5\5]8c8
C3I3h6n6
90D0J0
657]7c7z7
808J8g8
9!9+9;9K9[9d9v9
:,;$<6<O<d<k<q<
<'=:=m=
2#3-363?3T3]3
3'4W4s4
738g8o8
9'9E9S9
;8;?;D;H;L;P;
0G0e0p0x0
1&191I1]1q1
2=2`2m2{2
3'3<3)4G4p4
6A6W7^7{7
_1e1y1
1<2C2U2b2q2
3$3-3E3L3X3p3u3
6F7O7X9
<+=2=V=q=
1:3S3f3t3
3J4^4z4
2?2d263N4k4
5)575=5X5
596U6u6
6F7K7]7{7
8!8:9A9k9p9
:E:i:y:~:
;+;6;;;@;^;m;x;};
<4<Q<V<[<x<
==@=M=b=k=t=
>)>.>3>U>n>
?"?1?;?a?r?
0"060T0{0
0%141F1Y1s1
727X7r7{7
:S:b:l:y:
<!=@=c=
323P3Y3_3
7[8a8~8
9a:';-;a;l;
=B>Z>_>
1+1=1O1a1s1
50\0t0
11)162w2
<K=Q=_=n=
22<2D2m2t2
3>3H3c3
:9;\;^<w<
===[=o=
5L6p6%727]7*8/848O8\8e8j8o8
9#9D9T9j9t9
:%;M;v;
686[6o6
:(:V:>=
>8>?>F>i>
6R9]9p9z9
:";<;b;t; <;<k<
3 3?3E3_3e3j3q3
4 5J5R5o5
6 7W7t7
<<<<f<
0,000@0D0H0L0`0x0
1,1014181<1@1D1H1L1P1T1X1
2 2(20282<2@2D2H2L2P2T2\2`2d2h2l2p2t2x2
2H4P4X4`4h4p4x4
5 5(50585@5H5P5X5`5h5p5x5
6 6(60686@6H6P6X6`6h6p6x6
7 7(70787@7H7P7X7`7h7p7x7
8 8$8p8t8x8|8
9 9$9(94989<9@9D9H9L9P9T9X9\9`9d9h9l9p9t9x9|9
9P;T;X;\;`;d;h;l;p;t;x;|;
2$2,242<2D2L2T2\2d2l2t2|2
3$3,343<3D3L3T3\3d3l3t3|3
4$4,444<4D4L4T4\4d4l4t4|4
5$5,545<5D5L5T5\5d5l5t5|5
6$6,646<6D6L6T6\6d6l6t6|6
7$7,747<7D7L7T7\7d7l7t7|7
8$8,848<8D8L8T8\8d8l8t8|8
9 9(90989@9H9P9X9`9h9p9x9
: :(:0:8:@:H:P:X:`:h:p:x:
; ;(;0;8;@;H;P;X;`;h;p;x;
< <(<0<8<@<H<P<X<`<h<p<x<
= =(=0=8=@=H=P=X=`=h=p=x=
> >(>0>8>@>H>P>X>`>h>p>x>
? ?(?0?8?@?H?P?X?`?h?p?x?
5$5,545<5D5L5T5\5d5l5t5|5
6(686<6L6P6T6X6`6x6
4(444H4P4T4X4`4h4p4x4
54585X5
6(606<6p6
7 7@7`7|7
8 8@8`8
9 9@9`9
: :@:H:P:X:\:d:x:
;<;@;\;`;|;
50<`<p<
= =$=0=4=8=<=@=D=H=L=
HrOv@6
/V?~N,
RX-UR:F
G9CoQ!{
dgw"D}{
KGo%:!
ZpNl9w#
c)P,0O
i-%6lUU5X.&Ib
xRUKwQ
Fyk$z7
y]x|w?
vs#kEO
jmq2Yh.
V3A1R:(
Dc41y[
#W.cV2
)dE<;!
$#!m'
8fwjGR+y
Gs(],t|
U%QW=n#
:x9p1&8FIn%
ixRwW
Bv12w<s
SyO9ia#
IQam|N
ZBuaW}
OMT@3+j
cLQrICU%]
Kf&" s
(ZlnB^
zJeTDw
jN*UFLF5
l{R3?#
EVR)E~
5XRz{N
0FNoj}
i`lp~9D
ec#}w:
N,[[@
XVyOrGC
;pU.q:}[
L^]A0q[^
PSKgM~
TP&O;$
lKtLG/
V?NMZR!
$.>A?[
)I|pO/@|
)b:E0.
*U`W%`
0Lz)ox
W3Us;8
Gg,[80
)RARc8
i+DmW5
[#0WAH0
t8,,<*u
v!NQ3{
fxd2%{
@VG#?
sTO2JW
CFb9%E)
+&>8Q!
K]GszS
8|Q\y9
K!QF>
N$2w9S
v&-2xzN7q
4%JH;p
Bd8/#t+
A.!~<I
;c<`HV
ABm>sp
#5?etYr
-o4zF
^*`hQ=g
L?BGd@
F_fZADyw
#5*TWn
tRATypC
38/cK@
"w;v7Y
j@@C7F
;W,)boE
v\:sF?'
aDyUtO
c9l+oL
@=4\d8k
}9[0'p
^bPC_0^%6
j?1n`^
-;1whJq
e'/t-x
q(]0|ql#o
~I &fR:
]P3PrB
NEfFBI
JK"~r_
,7nIDm0/
m}*D,0
>/TBe5Y
G~dUp K
dd1UR9
2b_O02
{D"$p,
X0D*dFv
(Y>CJ\b#
y<x:LX|
6]zvT6p~
7iLvv}$
V:3$2!
{yfnR_
J:X:_<
GQ~.`
+73R+u
blWpt]T
"p.Gz
M3w9&G
)h@D">nD
IaP;T:]~
BFjFe"
^G/`Bx
"2'uY]R
F<#:xip
@S\!>A
q'MW&_
Jg@M_[
i3q`|a#7
0R>M)W
b*y!4e
u:}(\|
k8M4I%"
<0?!#f
w9Q\}3
#@^IyF$
8z6Ym(")
rTKlL6
sPd1A,,I
'qpB/e
)t%.w$
.Yk)sNn
oF4es)
x#5oCP
}eqeGi?
%Lto?[}o
t,Pk&dT]K
J&b;,H
I06V[I
C^!GD-
l0;eTQ
BNED[c
\wBTOt
+w]Y3;
U^Badp
fIZN7R
VmB~9/
He:L.3Sm
Kl`o-J?
TLT]jv
/\^1(nH
{p"*f9
/*$?ow
`?/0M:!@bjU
i<Id&b
j--+%$t
oUHH84
,]]QGYQ
,)+8 `=xj
?>]'"O"
'L^o'"
2HP{l
A,i6tMo
YkUA5`~
~r9pQy
TtVTmb
)DLz>P
78lG%)
E1u3)r
^pRR4
;b"#[G
In7F%V5,
Fk.ZOj#l
eBj}F8
T.sX|U;
S$&/Qp
$UzmXru
9icwZg
'8l;X=
l2yAy?
PN9)kY
.Cz37d
ON#+`#
PSpez/:c
yyT[7;
F1XuMVD
IJ!A#zR
<o0P2r
i?&{=+
ERK|z1[z
]e'zaa
7<|IS
;}j%y)
}Bz#I=
3# C+W
sht#m]
%1wy68
l)[$/?i7Z
3;bH(AD6
zhx1D#
WY>-0<
"[b{NDe
FI2Gz5!'q
N4Jh9VC
NnA%2>OY
$X+6u7
PVR%7?
y{[W4{
{&P\FS
fGH0yL
}RrW2c
s^$ZXr
Xxs5l4
mYz0vrV
Ze?KS5<j
iP,qw`G
oXO *
6oX3ga
,2_Q4b
p~?`h6
,J~yaL
I?/]UN
5W<yu%
j6|ix4
9rlL~,
8m,m|i
\1Vzo@e
P6Zl`6
i@^)=J2
PH *8k4
q}J<f;
cy0<6@\
)grC~)
/t#8:/
oUv?[-
86%[;<
V7G\}G
TU9e%f
s)J~V
-cf/"!
Gx6=3G
OTt4luG
8SI>2.L
<dGyqR
<t1RN~9
l7aq*b1
\A=':y
m98!Tx:
&^Lm8Q_-
!PjNsG
E_RPqz
.!?@0
:95EsW
"(ET7*d
*7"Pzo
C7EUJ_
#Kw"jFT1GO
:6kF$z
!Jwjq'
i8H2+\
G=a/xU8
2o;+1u
49:0W?
~E$!19'
'-2Mr7{
GAL1Z?
;l T!:Y
vqtu3`
#I9NQ8u
T01$gu
ys>NAV
F^P9J
i%|Oca
u/oLy
&{I'9>Kh.z
x%&%9Y0M
fulKc
<=DRwi
x`FGA8RI
/PkvKeWh
#tqhm+:m|Y~!E
4}@BvYY
<iL:tC
@gn3EC$
*dH=]lA-
<RA6d.
hGh%LIO{'(
V^wBe
Z9AR7\
#&32e7
[QxQC8
lrO]ZG
Y5KheZ
WH|Xwd%
E&ea0_0
-PiLs)
ygt"Ai
Q_0mcYM
vt0Qu>
?MYvGF
"qJo+%
=QcKh]
1eV'?A
Lt[JLkc2
vCmjz]
@//PDUUIC
R]zl7Vrq
a?';EZ
C3b~wy
{.F>r=
1Yp- ?
cVRVb=
;7Y$pT
(5[X&q
z'Kuq4M
z \*M8
\^mQ-8
s9{K/@
,EGveF\
T2.M5^
g$_I,r
w,tew=l
%lkx2'
B.Ar9H
/zI1w>
.-W/1j'
*!IHrK
/*D\H.
{jL4"!
w};'z2
{Px$\z
u&/VopoH
QD_j~;
""A1Mm
eFBYaf
m/`Fk[v
's0.G6
-)epbv
.q~hR-
\<Rz16P
}\BcET
W@WX.D5
({.eX_
tX~0N<M
{bx+`
#YM8z-
'U2z 2
s!OPl<
W5_R;kS
BEViTQ
&upUJf
..G1{l
.,.g}{
+1imD_
tL8e6A@k)[
nrIY<{
UYvcU{M)c;u;
[x C^Y
[HA>Y8
,z$q]-z
_[2jPVS
(l$-#OLr
jXVrO~w
;w^tu5
rh$=8i
O/io"
}}`SVze]9
Xk9;1r/
EB[9Dh
8u=AeX;
B]E$b5
W;IgiR
;s9SWz
6]bs0dC
`#>O:D
w|*RC*
0/EmXS
\+/h /
,YT3iI
wNZz<oW-
'R%fSd
_4J#Tx
q||MIOw
DO+~.M
@]H+;%Z
l0gP0;
$$>0nV
HWGs9a
AwJr{!S
wD,j:=~
v7-:ZhM
bMsMw@
02vRY
(Iw,u+b
G>}<+c}
,Mr!8F
I1qxQ?
!uAn[`
>.ZF96
#$tY)@
1-~gn?
jX4&Oq
,^v`}GZ/
2kwhj"
W$02~
gI.v*4
y<##14S
a610q
^;/SAV
`?Yy"=
[T27tD-
f*r/.
]CMzxJ
]SaMk1
1u.Fq,9
Ot{B&?
clO*xW+
^Hk:VB
NGDgx>
'/d[6nz
>@<|0#
&/&;k
J.:|8
3kS$B/O
r{-6)g^
AAy>2+c
@4nAeF
= y_a8t
8x2mK]=
$*yuo:
U+9dpo
Vs|NGx
*a_Eh0
x2,q)P7
<&lP)%
GYPO@1W
HvArj5
6@c3/nn
^,vmAnw
q$u)#IqX
eR3bi/
f3zbKD
k%0U*V
TAS!0((
+g#drB
XzX,Lh
[jk8Lqq7sK
#HN}G/Y
NL9]\w
>7|S]yg
%{2"Xf)
_N\i@4
~I^FXU=
idEypW
yw)y|
}Lej{[[Y
NXGgX cRfa
6-.V(hy
jMkv+f=
'!_c$d}
@qTr}3
L=BHPKz
;r1oRY
]EWqhV
`F~YRS:.
37I2vy
eq_a@g
"H$etB
xCm%9y%
x&dq(E}s
G&Tw`e'
C"C\\=
|(-W}zJ
p*5+N~
E6jUo_
"yA<I*]
khOWm$
'TQ~R6
\q\*=
l0FnD^
e4bNV9
Yl0h@C
gu 3*~
A,/k"-c
'f3N T
&@>(u<k_
@LY1m[
-E'#ln
O,`atm0
J(9L}.9zg
^K.bFv
]sUIm\
ZomFG^
|{O:VC
6N4F5I
8!nw200
XfX aR/
pc]G18
|AxNK
W2uwn
n,S;>i!
wKT=@9
HrOv@6
/V?~N,
RX-UR:F
G9CoQ!{
dgw"D}{
KGo%:!
ZpNl9w#
c)P,0O
i-%6lUU5X.&Ib
xRUKwQ
Fyk$z7
y]x|w?
vs#kEO
jmq2Yh.
V3A1R:(
Dc41y[
#W.cV2
)dE<;!
$#!m'
8fwjGR+y
Gs(],t|
U%QW=n#
:x9p1&8FIn%
ixRwW
Bv12w<s
SyO9ia#
IQam|N
ZBuaW}
OMT@3+j
cLQrICU%]
Kf&" s
(ZlnB^
zJeTDw
jN*UFLF5
l{R3?#
EVR)E~
5XRz{N
0FNoj}
i`lp~9D
ec#}w:
N,[[@
XVyOrGC
;pU.q:}[
L^]A0q[^
PSKgM~
TP&O;$
lKtLG/
V?NMZR!
$.>A?[
)I|pO/@|
)b:E0.
*U`W%`
0Lz)ox
W3Us;8
Gg,[80
)RARc8
i+DmW5
[#0WAH0
t8,,<*u
v!NQ3{
fxd2%{
@VG#?
sTO2JW
CFb9%E)
+&>8Q!
K]GszS
8|Q\y9
K!QF>
N$2w9S
v&-2xzN7q
4%JH;p
Bd8/#t+
A.!~<I
;c<`HV
ABm>sp
#5?etYr
-o4zF
^*`hQ=g
L?BGd@
F_fZADyw
#5*TWn
tRATypC
38/cK@
"w;v7Y
j@@C7F
;W,)boE
v\:sF?'
aDyUtO
c9l+oL
@=4\d8k
}9[0'p
^bPC_0^%6
j?1n`^
-;1whJq
e'/t-x
q(]0|ql#o
~I &fR:
]P3PrB
NEfFBI
JK"~r_
,7nIDm0/
m}*D,0
>/TBe5Y
G~dUp K
dd1UR9
2b_O02
{D"$p,
X0D*dFv
(Y>CJ\b#
y<x:LX|
6]zvT6p~
7iLvv}$
V:3$2!
{yfnR_
J:X:_<
GQ~.`
+73R+u
blWpt]T
"p.Gz
M3w9&G
)h@D">nD
IaP;T:]~
BFjFe"
^G/`Bx
"2'uY]R
F<#:xip
@S\!>A
q'MW&_
Jg@M_[
i3q`|a#7
0R>M)W
b*y!4e
u:}(\|
k8M4I%"
<0?!#f
w9Q\}3
#@^IyF$
8z6Ym(")
rTKlL6
sPd1A,,I
'qpB/e
)t%.w$
.Yk)sNn
oF4es)
x#5oCP
}eqeGi?
%Lto?[}o
t,Pk&dT]K
J&b;,H
I06V[I
C^!GD-
l0;eTQ
BNED[c
\wBTOt
+w]Y3;
U^Badp
fIZN7R
VmB~9/
He:L.3Sm
Kl`o-J?
TLT]jv
/\^1(nH
{p"*f9
/*$?ow
`?/0M:!@bjU
i<Id&b
j--+%$t
oUHH84
,]]QGYQ
,)+8 `=xj
?>]'"O"
'L^o'"
2HP{l
A,i6tMo
YkUA5`~
~r9pQy
TtVTmb
)DLz>P
78lG%)
E1u3)r
^pRR4
;b"#[G
In7F%V5,
Fk.ZOj#l
eBj}F8
T.sX|U;
S$&/Qp
$UzmXru
9icwZg
'8l;X=
l2yAy?
PN9)kY
.Cz37d
ON#+`#
PSpez/:c
yyT[7;
F1XuMVD
IJ!A#zR
<o0P2r
i?&{=+
ERK|z1[z
]e'zaa
7<|IS
;}j%y)
}Bz#I=
3# C+W
sht#m]
%1wy68
l)[$/?i7Z
3;bH(AD6
zhx1D#
WY>-0<
"[b{NDe
FI2Gz5!'q
N4Jh9VC
NnA%2>OY
$X+6u7
PVR%7?
y{[W4{
{&P\FS
fGH0yL
}RrW2c
s^$ZXr
Xxs5l4
mYz0vrV
Ze?KS5<j
iP,qw`G
oXO *
6oX3ga
,2_Q4b
p~?`h6
,J~yaL
I?/]UN
5W<yu%
j6|ix4
9rlL~,
8m,m|i
\1Vzo@e
P6Zl`6
i@^)=J2
PH *8k4
q}J<f;
cy0<6@\
)grC~)
/t#8:/
oUv?[-
86%[;<
V7G\}G
TU9e%f
s)J~V
-cf/"!
Gx6=3G
OTt4luG
8SI>2.L
<dGyqR
<t1RN~9
l7aq*b1
\A=':y
m98!Tx:
&^Lm8Q_-
!PjNsG
E_RPqz
.!?@0
:95EsW
"(ET7*d
*7"Pzo
C7EUJ_
#Kw"jFT1GO
:6kF$z
!Jwjq'
i8H2+\
G=a/xU8
2o;+1u
49:0W?
~E$!19'
'-2Mr7{
GAL1Z?
;l T!:Y
vqtu3`
#I9NQ8u
T01$gu
ys>NAV
F^P9J
i%|Oca
u/oLy
&{I'9>Kh.z
x%&%9Y0M
fulKc
<=DRwi
x`FGA8RI
/PkvKeWh
#tqhm+:m|Y~!E
4}@BvYY
<iL:tC
@gn3EC$
*dH=]lA-
<RA6d.
hGh%LIO{'(
V^wBe
Z9AR7\
#&32e7
[QxQC8
lrO]ZG
Y5KheZ
WH|Xwd%
E&ea0_0
-PiLs)
ygt"Ai
Q_0mcYM
vt0Qu>
?MYvGF
"qJo+%
=QcKh]
1eV'?A
Lt[JLkc2
vCmjz]
@//PDUUIC
R]zl7Vrq
a?';EZ
C3b~wy
{.F>r=
1Yp- ?
cVRVb=
;7Y$pT
(5[X&q
z'Kuq4M
z \*M8
\^mQ-8
s9{K/@
,EGveF\
T2.M5^
g$_I,r
w,tew=l
%lkx2'
B.Ar9H
/zI1w>
.-W/1j'
*!IHrK
/*D\H.
{jL4"!
w};'z2
{Px$\z
u&/VopoH
QD_j~;
""A1Mm
eFBYaf
m/`Fk[v
's0.G6
-)epbv
.q~hR-
\<Rz16P
}\BcET
W@WX.D5
({.eX_
tX~0N<M
{bx+`
#YM8z-
'U2z 2
s!OPl<
W5_R;kS
BEViTQ
&upUJf
..G1{l
.,.g}{
+1imD_
tL8e6A@k)[
nrIY<{
UYvcU{M)c;u;
[x C^Y
[HA>Y8
,z$q]-z
_[2jPVS
(l$-#OLr
jXVrO~w
;w^tu5
rh$=8i
O/io"
}}`SVze]9
Xk9;1r/
EB[9Dh
8u=AeX;
B]E$b5
W;IgiR
;s9SWz
6]bs0dC
`#>O:D
w|*RC*
0/EmXS
\+/h /
,YT3iI
wNZz<oW-
'R%fSd
_4J#Tx
q||MIOw
DO+~.M
@]H+;%Z
l0gP0;
$$>0nV
HWGs9a
AwJr{!S
wD,j:=~
v7-:ZhM
bMsMw@
02vRY
(Iw,u+b
G>}<+c}
,Mr!8F
I1qxQ?
!uAn[`
>.ZF96
#$tY)@
1-~gn?
jX4&Oq
,^v`}GZ/
2kwhj"
W$02~
gI.v*4
y<##14S
a610q
^;/SAV
`?Yy"=
[T27tD-
f*r/.
]CMzxJ
]SaMk1
1u.Fq,9
Ot{B&?
clO*xW+
^Hk:VB
NGDgx>
'/d[6nz
>@<|0#
&/&;k
J.:|8
3kS$B/O
r{-6)g^
AAy>2+c
@4nAeF
= y_a8t
8x2mK]=
$*yuo:
U+9dpo
Vs|NGx
*a_Eh0
x2,q)P7
<&lP)%
GYPO@1W
HvArj5
6@c3/nn
^,vmAnw
q$u)#IqX
eR3bi/
f3zbKD
k%0U*V
TAS!0((
+g#drB
XzX,Lh
[jk8Lqq7sK
#HN}G/Y
NL9]\w
>7|S]yg
%{2"Xf)
_N\i@4
~I^FXU=
idEypW
yw)y|
}Lej{[[Y
NXGgX cRfa
6-.V(hy
jMkv+f=
'!_c$d}
@qTr}3
L=BHPKz
;r1oRY
]EWqhV
`F~YRS:.
37I2vy
eq_a@g
"H$etB
xCm%9y%
x&dq(E}s
G&Tw`e'
C"C\\=
|(-W}zJ
p*5+N~
E6jUo_
"yA<I*]
khOWm$
'TQ~R6
\q\*=
l0FnD^
e4bNV9
Yl0h@C
gu 3*~
A,/k"-c
'f3N T
&@>(u<k_
@LY1m[
-E'#ln
O,`atm0
J(9L}.9zg
^K.bFv
]sUIm\
ZomFG^
|{O:VC
6N4F5I
8!nw200
XfX aR/
pc]G18
|AxNK
W2uwn
n,S;>i!
wKT=@9
((((( H
dddd, MMMM dd, yyyy
MM/dd/yy
syr-sy
February
January
Thursday
Tuesday
Wednesday
Saturday
Sunday
Monday
Friday
div-mv
August
zh-cht
HH:mm:ss
zh-chs
October
November
September
December
smj-no
sma-no
quz-bo
uz-uz-latn
az-az-latn
sr-sp-latn
bs-ba-latn
sr-ba-latn
uz-UZ-Latn
az-AZ-Latn
sr-SP-Latn
bs-BA-Latn
sr-BA-Latn
kok-in
uz-uz-cyrl
az-az-cyrl
sr-sp-cyrl
sr-ba-cyrl
uz-UZ-Cyrl
az-AZ-Cyrl
sr-SP-Cyrl
sr-BA-Cyrl
mscoree.dll
sms-fi
smn-fi
kernelbase
smj-se
sma-se
quz-pe
quz-ec
syr-SY
div-MV
zh-CHT
zh-CHS
smj-NO
sma-NO
quz-BO
kok-IN
sms-FI
smn-FI
smj-SE
sma-SE
quz-PE
quz-EC
api-ms-win-core-file-l1-2-4
user32
kernel32
advapi32
api-ms-win-core-file-l1-2-2
api-ms-win-core-sysinfo-l1-2-1
api-ms-win-core-fibers-l1-1-1
api-ms-win-core-synch-l1-2-0
api-ms-win-core-xstate-l2-1-0
api-ms-win-core-winrt-l1-1-0
api-ms-win-core-fibers-l1-1-0
api-ms-win-core-string-l1-1-0
ext-ms-
api-ms-
(null)
CONOUT$
api-ms-win-core-processthreads-l1-1-2
api-ms-win-appmodel-runtime-l1-1-2
api-ms-win-core-localization-l1-2-1
api-ms-win-core-datetime-l1-1-1
api-ms-win-core-localization-obsolete-l1-2-0
ext-ms-win-ntuser-dialogbox-l1-1-0
api-ms-win-rtcore-ntuser-window-l1-1-0
api-ms-win-security-systemfunctions-l1-1-0
ext-ms-win-ntuser-windowstation-l1-1-0
Antivirus Signature
Bkav W32.AIDetectMalware
Lionic Clean
Elastic malicious (high confidence)
MicroWorld-eScan Trojan.GenericKD.74800196
CMC Clean
CAT-QuickHeal Clean
Skyhigh BehavesLike.Win32.Trojan.vh
ALYac Trojan.GenericKD.74800196
Cylance Unsafe
Zillya Clean
Sangfor Trojan.Win32.Save.a
CrowdStrike win/malicious_confidence_90% (D)
Alibaba Clean
K7GW Trojan ( 005bd2f21 )
K7AntiVirus Trojan ( 005bd2f21 )
huorong Clean
Baidu Clean
VirIT Clean
Paloalto Clean
Symantec ML.Attribute.HighConfidence
tehtris Clean
ESET-NOD32 a variant of Win32/Kryptik.HYGY
APEX Malicious
Avast Win32:Evo-gen [Trj]
Cynet Malicious (score: 100)
Kaspersky HEUR:Trojan.Win32.Stelpak.gen
BitDefender Trojan.GenericKD.74800196
NANO-Antivirus Clean
ViRobot Clean
Tencent Malware.Win32.Gencirc.10c06c13
Sophos Generic ML PUA (PUA)
F-Secure Trojan.TR/Crypt.Agent.muynp
DrWeb Trojan.Inject5.11904
VIPRE Trojan.GenericKD.74800196
TrendMicro Clean
McAfeeD Real Protect-LS!4F3200E5324A
Trapmine Clean
CTX exe.trojan.generic
Emsisoft Trojan.GenericKD.74800196 (B)
Ikarus Clean
FireEye Generic.mg.4f3200e5324a3335
Jiangmin Clean
Webroot Clean
Varist W32/Trojan.QCQT-3737
Avira TR/Crypt.Agent.muynp
Fortinet W32/Kryptik.HYGY!tr
Antiy-AVL Trojan/Win32.Stelpak
Kingsoft malware.kb.a.979
Gridinsoft Clean
Xcitium Clean
Arcabit Trojan.Generic.D4755C44
SUPERAntiSpyware Clean
ZoneAlarm Clean
Microsoft Trojan:Win32/Vidar.CBB!MTB
Google Detected
AhnLab-V3 Trojan/Win.Generic.R681772
Acronis Clean
McAfee Clean
TACHYON Clean
VBA32 Trojan.Stelpak
Malwarebytes Trojan.Crypt
Panda Trj/GdSda.A
Zoner Clean
TrendMicro-HouseCall Clean
Rising Stealer.Convagent!8.1326D (TFE:5:thkolWElf4R)
Yandex Clean
SentinelOne Static AI - Malicious PE
MaxSecure Clean
GData Win32.Trojan.PSE.1103JM4
AVG Win32:Evo-gen [Trj]
DeepInstinct MALICIOUS
alibabacloud Clean
No IRMA results available.