Static | ZeroBOX

PE Compile Time

2024-12-08 18:40:33

PE Imphash

ae1179fd332ecab323e4058edd63692f

PEiD Signatures

Armadillo v1.71

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x000047ca 0x00005000 6.2571510971
.rdata 0x00006000 0x00000b36 0x00001000 4.16330299988
.data 0x00007000 0x00003e5c 0x00004000 2.20301069143

Imports

Library KERNEL32.dll:
0x406000 GetTickCount
0x406004 GetTempPathW
0x406008 GetCommandLineA
0x40600c GetVersion
0x406010 ExitProcess
0x406014 TerminateProcess
0x406018 GetCurrentProcess
0x40601c HeapReAlloc
0x406020 HeapAlloc
0x406024 HeapSize
0x40602c GetModuleFileNameA
0x406038 WideCharToMultiByte
0x406044 SetHandleCount
0x406048 GetStdHandle
0x40604c GetFileType
0x406050 GetStartupInfoA
0x406054 GetCurrentThreadId
0x406058 TlsSetValue
0x40605c TlsAlloc
0x406060 SetLastError
0x406064 TlsGetValue
0x406068 GetLastError
0x40606c GetModuleHandleA
0x406074 GetVersionExA
0x406078 HeapDestroy
0x40607c HeapCreate
0x406080 VirtualFree
0x406084 HeapFree
0x406088 RtlUnwind
0x40608c WriteFile
0x40609c VirtualAlloc
0x4060a0 GetCPInfo
0x4060a4 GetACP
0x4060a8 GetOEMCP
0x4060ac GetProcAddress
0x4060b0 LoadLibraryA
0x4060b4 MultiByteToWideChar
0x4060b8 LCMapStringA
0x4060bc LCMapStringW
0x4060c0 GetStringTypeA
0x4060c4 GetStringTypeW
Library USER32.dll:
0x4060d4 wsprintfW

!This program cannot be run in DOS mode.
{\+Rich
`.rdata
@.data
YYh(p@
8t9UW
SS@SSPVSS
t#SSUP
t$$VSS
_^][YY
t.;t$$t(
VC20XC00U
PPPPPPPP
PPPPPPPP
tFGQPS
^}%95D
__GLOBAL_HEAP_SELECTED
__MSVCRT_HEAP_SELECT
runtime error
TLOSS error
SING error
DOMAIN error
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
abnormal program termination
- not enough space for environment
- not enough space for arguments
- floating point not loaded
Microsoft Visual C++ Runtime Library
Runtime Error!
Program:
<program name unknown>
GetLastActivePopup
GetActiveWindow
MessageBoxA
user32.dll
H:mm:ss
dddd, MMMM dd, yyyy
M/d/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
SunMonTueWedThuFriSat
JanFebMarAprMayJunJulAugSepOctNovDec
GetTickCount
GetTempPathW
KERNEL32.dll
wsprintfW
USER32.dll
GetCommandLineA
GetVersion
ExitProcess
TerminateProcess
GetCurrentProcess
HeapReAlloc
HeapAlloc
HeapSize
UnhandledExceptionFilter
GetModuleFileNameA
FreeEnvironmentStringsA
FreeEnvironmentStringsW
WideCharToMultiByte
GetEnvironmentStrings
GetEnvironmentStringsW
SetHandleCount
GetStdHandle
GetFileType
GetStartupInfoA
GetCurrentThreadId
TlsSetValue
TlsAlloc
SetLastError
TlsGetValue
GetLastError
GetModuleHandleA
GetEnvironmentVariableA
GetVersionExA
HeapDestroy
HeapCreate
VirtualFree
HeapFree
RtlUnwind
WriteFile
InitializeCriticalSection
EnterCriticalSection
LeaveCriticalSection
VirtualAlloc
GetCPInfo
GetACP
GetOEMCP
GetProcAddress
LoadLibraryA
MultiByteToWideChar
LCMapStringA
LCMapStringW
GetStringTypeA
GetStringTypeW
InterlockedDecrement
InterlockedIncrement
dSVWPd
HKEY_CURRENT_USER,SOFTWARE\Microsoft\Windows\CurrentVersion\Run,BaiduYunGuanjiaas,0,C:\Users\Public\Downloads\vdwsa.exe
e%sT%d.log
((((( H
Antivirus Signature
Bkav Clean
Lionic Clean
Elastic Clean
ClamAV Clean
CMC Clean
CAT-QuickHeal Clean
Skyhigh Clean
Cylance Clean
Zillya Clean
Sangfor Clean
CrowdStrike win/malicious_confidence_90% (W)
K7GW Clean
K7AntiVirus Clean
huorong Clean
Baidu Clean
Paloalto Clean
Symantec Clean
tehtris Clean
APEX Clean
Avast Clean
Cynet Clean
Kaspersky HEUR:Trojan.Win32.BypassUAC.gen
Alibaba Clean
NANO-Antivirus Clean
ViRobot Clean
MicroWorld-eScan Clean
Tencent Clean
F-Secure Clean
VIPRE Clean
McAfeeD Clean
Trapmine suspicious.low.ml.score
Ikarus Clean
Jiangmin Clean
Webroot Clean
Avira Clean
Antiy-AVL Clean
Kingsoft Win32.Trojan.BypassUAC.gen
Gridinsoft Clean
Xcitium Clean
Microsoft Clean
SUPERAntiSpyware Clean
AhnLab-V3 Malware/Win.Generic.C5713640
Acronis Clean
VBA32 Clean
TACHYON Clean
Malwarebytes Clean
Panda Clean
Zoner Clean
TrendMicro-HouseCall Clean
Rising Trojan.BypassUAC!8.EC23 (LESS:bWQ1OgaF+Szp4L23)
Yandex Clean
SentinelOne Clean
MaxSecure Trojan.Malware.300983.susgen
Fortinet Clean
AVG Clean
DeepInstinct MALICIOUS
alibabacloud Clean
No IRMA results available.