Static | ZeroBOX

PE Compile Time

2025-01-31 23:59:29

PE Imphash

b9d5e6231a729f64685d981b20518bd0

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x0001acab 0x0001ae00 6.6883534015
.rdata 0x0001c000 0x00007008 0x00007200 4.82782205189
.data 0x00024000 0x00003b78 0x00001a00 3.75924799837
.rsrc 0x00028000 0x00000578 0x00000600 4.14695741432
.reloc 0x00029000 0x0000768c 0x00007800 1.84863258704

Resources

Name Offset Size Language Sub-language File type
RT_VERSION 0x000280a0 0x000002b0 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_MANIFEST 0x00028350 0x00000224 LANG_ENGLISH SUBLANG_ENGLISH_US XML 1.0 document, UTF-8 Unicode (with BOM) text, with very long lines, with CRLF line terminators

Imports

Library ADVAPI32.dll:
0x41c000 RegOpenKeyExA
0x41c004 RegOpenKeyExW
0x41c008 RegCloseKey
0x41c00c RegSetValueExW
Library SHELL32.dll:
0x41c158 SHGetFolderPathW
Library KERNEL32.dll:
0x41c018 FlushFileBuffers
0x41c01c WriteConsoleW
0x41c020 GetProcAddress
0x41c024 LoadLibraryA
0x41c028 ExitProcess
0x41c02c GlobalLock
0x41c030 WriteFile
0x41c034 GlobalAlloc
0x41c038 Sleep
0x41c03c GetModuleFileNameW
0x41c040 CreateFileW
0x41c044 GlobalUnlock
0x41c048 GetLastError
0x41c04c CreateMutexA
0x41c050 IsDebuggerPresent
0x41c054 CloseHandle
0x41c058 SetFileAttributesW
0x41c05c CreateThread
0x41c060 CreateDirectoryW
0x41c064 CopyFileW
0x41c074 EncodePointer
0x41c078 DecodePointer
0x41c08c WideCharToMultiByte
0x41c090 GetLocaleInfoEx
0x41c094 MultiByteToWideChar
0x41c098 GetStringTypeW
0x41c09c GetCommandLineW
0x41c0a0 HeapFree
0x41c0a4 HeapAlloc
0x41c0a8 HeapReAlloc
0x41c0ac RaiseException
0x41c0b0 RtlUnwind
0x41c0b4 GetCPInfo
0x41c0bc SetLastError
0x41c0c0 GetCurrentThreadId
0x41c0c4 GetModuleHandleExW
0x41c0c8 GetStdHandle
0x41c0cc GetProcessHeap
0x41c0d0 GetFileType
0x41c0d4 InitOnceExecuteOnce
0x41c0d8 GetStartupInfoW
0x41c0e4 GetTickCount64
0x41c0f8 FlsAlloc
0x41c0fc FlsGetValue
0x41c100 FlsSetValue
0x41c104 FlsFree
0x41c108 GetCurrentProcess
0x41c10c TerminateProcess
0x41c110 GetModuleHandleW
0x41c114 HeapSize
0x41c118 GetACP
0x41c11c IsValidCodePage
0x41c120 GetOEMCP
0x41c124 CompareStringEx
0x41c12c LCMapStringEx
0x41c130 IsValidLocaleName
0x41c134 EnumSystemLocalesEx
0x41c138 LoadLibraryExW
0x41c13c OutputDebugStringW
0x41c140 LoadLibraryW
0x41c144 GetConsoleCP
0x41c148 GetConsoleMode
0x41c14c SetFilePointerEx
0x41c150 SetStdHandle

!This program cannot be run in DOS mode.
`.rdata
@.data
@.reloc
~,9~$t
tC97u?j
D$XSVW
1tSHtPH
ut9FTtoV
F$;Vh|
\t0HHt
D$HSVW
t{9uwj
9wh~TV
+WL+OL3
\uXC;]
N<0|'<9
<0|0<9
+tJHtGH
Ht6Ht*
ut9FTtoV
F$;Vh|
FH<_u\
FH<.tP<[tL<\tH<*tD<|t@<^t<<$t8
FH<(t(<)t$<+t <?t
9wh~TV
+WL+OL3
D$lPWWj#W
CD$<WP
CD$TWP
QQSVWd
PP9E u
PPPPPPPP
~pjCXf
j@j _W
QQSVWh
j"_f9y
Genuu_
ineIuV
nteluM3
HtHu4j
tyPVj@W
_tcPVj@
u#j,Xf;
>Cu/f9F
RVSQSWV
tf=HEB
,SVWj0X
Wj0XPV
SVWjA_jZ+
uBjAYjZ+
URPQQh
t VV9u
;t$,v-
UQPXY]Y[
<0|o<9
G Pj*S
G$Pj+S
G(Pj,S
G,Pj-S
G0Pj.S
G4Pj/S
G8PjDS
G<PjES
G@PjFS
GDPjGS
GHPjHS
GLPjIS
GPPjJS
GTPjKS
GXPjLS
G\PjMS
G`PjNS
GdPjOS
GhPj8S
GlPj9S
GpPj:S
GtPj;S
GxPj<S
G|Pj=S
Yu2Vj@h
x$;5@zB
Ht+Ht$Ht
HtHHt
SVjA[jZ^+
jAZjZ^+
x&;5@zB
~';_t|%3
+tHHt
+t"HHt
HAO8t
uHjAXf;
xy;5@zB
permission denied
file exists
no such device
filename too long
device or resource busy
io error
directory not empty
invalid argument
no space on device
no such file or directory
function not supported
no lock available
not enough memory
resource unavailable try again
cross device link
operation canceled
too many files open
permission_denied
address_in_use
address_not_available
address_family_not_supported
connection_already_in_progress
bad_file_descriptor
connection_aborted
connection_refused
connection_reset
destination_address_required
bad_address
host_unreachable
operation_in_progress
interrupted
invalid_argument
already_connected
too_many_files_open
message_size
filename_too_long
network_down
network_reset
network_unreachable
no_buffer_space
no_protocol_option
not_connected
not_a_socket
operation_not_supported
protocol_not_supported
wrong_protocol_type
timed_out
operation_would_block
address family not supported
address in use
address not available
already connected
argument list too long
argument out of domain
bad address
bad file descriptor
bad message
broken pipe
connection aborted
connection already in progress
connection refused
connection reset
destination address required
executable format error
file too large
host unreachable
identifier removed
illegal byte sequence
inappropriate io control operation
invalid seek
is a directory
message size
network down
network reset
network unreachable
no buffer space
no child process
no link
no message available
no message
no protocol option
no stream resources
no such device or address
no such process
not a directory
not a socket
not a stream
not connected
not supported
operation in progress
operation not permitted
operation not supported
operation would block
owner dead
protocol error
protocol not supported
read only file system
resource deadlock would occur
result out of range
state not recoverable
stream timeout
text file busy
timed out
too many files open in system
too many links
too many symbolic link levels
value too large
wrong protocol type
bad allocation
regex_error(error_collate): The expression contained an invalid collating element name.
regex_error(error_ctype): The expression contained an invalid character class name.
regex_error(error_escape): The expression contained an invalid escaped character, or a trailing escape.
regex_error(error_backref): The expression contained an invalid back reference.
regex_error(error_brack): The expression contained mismatched [ and ].
regex_error(error_paren): The expression contained mismatched ( and ).
regex_error(error_brace): The expression contained mismatched { and }.
regex_error(error_badbrace): The expression contained an invalid range in a { expression }.
regex_error(error_range): The expression contained an invalid character range, such as [b-a] in most encodings.
regex_error(error_space): There was insufficient memory to convert the expression into a finite state machine.
regex_error(error_badrepeat): One of *?+{ was not preceded by a valid regular expression.
regex_error(error_complexity): The complexity of an attempted match against a regular expression exceeded a pre-set level.
regex_error(error_stack): There was insufficient memory to determine whether the regular expression could match the specified character sequence.
regex_error(error_parse)
regex_error(error_syntax)
regex_error
0123456789abcdefghijklmnopqrstuvwxyz
0123456789abcdefghijklmnopqrstuvwxyz
0123456789abcdefABCDEF
Unknown exception
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
CorExitProcess
GetCurrentPackageId
bad exception
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
Sunday
Monday
Tuesday
Wednesday
Thursday
Friday
Saturday
January
February
August
September
October
November
December
MM/dd/yy
dddd, MMMM dd, yyyy
HH:mm:ss
_hypot
_nextafter
(null)
`h````
xpxxxx
SunMonTueWedThuFriSat
JanFebMarAprMayJunJulAugSepOctNovDec
MessageBoxW
GetActiveWindow
GetLastActivePopup
GetUserObjectInformationW
GetProcessWindowStation
__based(
__cdecl
__pascal
__stdcall
__thiscall
__fastcall
__clrcall
__eabi
__ptr64
__restrict
__unaligned
restrict(
delete
operator
`vftable'
`vbtable'
`vcall'
`typeof'
`local static guard'
`string'
`vbase destructor'
`vector deleting destructor'
`default constructor closure'
`scalar deleting destructor'
`vector constructor iterator'
`vector destructor iterator'
`vector vbase constructor iterator'
`virtual displacement map'
`eh vector constructor iterator'
`eh vector destructor iterator'
`eh vector vbase constructor iterator'
`copy constructor closure'
`udt returning'
`local vftable'
`local vftable constructor closure'
new[]
delete[]
`omni callsig'
`placement delete closure'
`placement delete[] closure'
`managed vector constructor iterator'
`managed vector destructor iterator'
`eh vector copy constructor iterator'
`eh vector vbase copy constructor iterator'
`dynamic initializer for '
`dynamic atexit destructor for '
`vector copy constructor iterator'
`vector vbase copy constructor iterator'
`managed vector copy constructor iterator'
`local static thread guard'
Type Descriptor'
Base Class Descriptor at (
Base Class Array'
Class Hierarchy Descriptor'
Complete Object Locator'
`h`hhh
xppwpp
1#SNAN
1#QNAN
generic
unknown error
iostream
iostream stream error
system
xdigit
invalid string position
string too long
bad locale name
\b(1|3|bc1)[a-zA-HJ-NP-Z0-9]{25,42}\b
\b0x[a-fA-F0-9]{40}\b
\bT[a-zA-HJ-NP-Z0-9]{33}\b
\b(L|M)[a-zA-HJ-NP-Z0-9]{26,34}\b
\bbitcoincash:[a-zA-HJ-NP-Z0-9]{26,42}\b
\baddr1[a-z0-9]{54}\b
\br[a-zA-Z0-9]{24,34}\b
\bD[a-zA-Z0-9]{32,34}\b
\b4[0-9AB][1-9A-HJ-NP-Za-km-z]{93}\b
\bX[kl][a-zA-Z0-9]{32}\b
SetClipboardData
User32.dll
EmptyClipboard
OpenClipboard
GetClipboardData
CloseClipboard
1ZWNNwbtBZWS9M9Q58NA2z9e4AXvK9VuD
0x270a8ee6933ae7a56b82c7c3e625cca5c120a520
TBTJVsqyeatQDJXNcN6K3b6SnFLVYChuNn
LKnTdbFRxqoZgx3JaD7fS43urGXp2dgkLU
SVC_DiamoTrix
bad cast
vector<bool> too long
vector<T> too long
abcdefghijklmnopqrstuvwxyzABCDEFGHIJKLMNOPQRSTUVWXYZ0123456789_
()$^.*+?[]|\-{},:=!
Software\Microsoft\Windows\CurrentVersion\Run
RegOpenKeyExW
RegCloseKey
RegSetValueExW
RegOpenKeyExA
ADVAPI32.dll
SHGetFolderPathW
SHELL32.dll
GetProcAddress
LoadLibraryA
ExitProcess
GlobalLock
WriteFile
GlobalAlloc
GetModuleFileNameW
CreateFileW
GlobalUnlock
GetLastError
CreateMutexA
IsDebuggerPresent
CloseHandle
SetFileAttributesW
CreateThread
CreateDirectoryW
CopyFileW
SetCurrentDirectoryW
InterlockedIncrement
InterlockedDecrement
EncodePointer
DecodePointer
EnterCriticalSection
LeaveCriticalSection
InitializeCriticalSectionEx
DeleteCriticalSection
WideCharToMultiByte
GetLocaleInfoEx
MultiByteToWideChar
GetStringTypeW
GetCommandLineW
HeapFree
HeapAlloc
HeapReAlloc
RaiseException
RtlUnwind
InitializeCriticalSectionAndSpinCount
GetCPInfo
IsProcessorFeaturePresent
SetLastError
GetCurrentThreadId
GetModuleHandleExW
GetStdHandle
GetProcessHeap
GetFileType
InitOnceExecuteOnce
GetStartupInfoW
QueryPerformanceCounter
GetSystemTimeAsFileTime
GetTickCount64
GetEnvironmentStringsW
FreeEnvironmentStringsW
UnhandledExceptionFilter
SetUnhandledExceptionFilter
FlsAlloc
FlsGetValue
FlsSetValue
FlsFree
GetCurrentProcess
TerminateProcess
GetModuleHandleW
HeapSize
GetACP
IsValidCodePage
GetOEMCP
CompareStringEx
GetUserDefaultLocaleName
LCMapStringEx
IsValidLocaleName
EnumSystemLocalesEx
LoadLibraryExW
OutputDebugStringW
LoadLibraryW
GetConsoleCP
GetConsoleMode
SetFilePointerEx
SetStdHandle
WriteConsoleW
FlushFileBuffers
KERNEL32.dll
.?AVbad_alloc@std@@
.?AVlogic_error@std@@
.?AVlength_error@std@@
.?AVout_of_range@std@@
.?AVregex_error@std@@
.?AV_Locimp@locale@std@@
Copyright (c) 1992-2004 by P.J. Plauger, licensed by Dinkumware, Ltd. ALL RIGHTS RESERVED.
.?AVtype_info@@
.?AVbad_exception@std@@
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
.?AV_Iostream_error_category@std@@
.?AV_System_error_category@std@@
.?AVerror_category@std@@
.?AV_Generic_error_category@std@@
.?AV?$_Node_str@D@std@@
.?AVbad_cast@std@@
.?AV_Node_capture@std@@
.?AV?$_Node_class@DV?$regex_traits@D@std@@@std@@
.?AV_Node_endif@std@@
.?AV_Node_assert@std@@
.?AVexception@std@@
.?AV_Node_rep@std@@
.?AV_Node_back@std@@
.?AV_Node_end_rep@std@@
.?AVruntime_error@std@@
.?AV?$ctype@D@std@@
.?AV_Node_end_group@std@@
.?AV_Node_base@std@@
.?AV_Node_if@std@@
.?AV_Facet_base@std@@
.?AUctype_base@std@@
.?AVfacet@locale@std@@
.?AV?$collate@D@std@@
.?AV_Root_node@std@@
<?xml version="1.0" encoding="UTF-8" standalone="yes"?>
<assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0"><trustInfo xmlns="urn:schemas-microsoft-com:asm.v3"><security><requestedPrivileges><requestedExecutionLevel level="asInvoker" uiAccess="false"></requestedExecutionLevel></requestedPrivileges></security></trustInfo><application xmlns="urn:schemas-microsoft-com:asm.v3"><windowsSettings><dpiAware xmlns="http://schemas.microsoft.com/SMI/2005/WindowsSettings">true</dpiAware></windowsSettings></application></assembly>
1*1[1d1
546>6I6
7#7E7L7
;;,;9;?;S;g;};
=!=+=0=:=?=I=N=X=_=d=
4]47m7
;"<.<g<
1^3z3#4
6^7Q8`<_>
'0+0/03070;0?0C0G0K0O0S0W0[0_0c0g0k0o0s0w0
3)4;4D4
616i6|6
>&>A>\>y>
?!?(?/?6?=?D?K?R?Y?`?g?o?s?w?{?
0#0.0J0o0
3I3T3f3n3x3
88&848I8W8e8n8
<,<3<;<@<D<H<q<
<"=(=,=0=4=
=>Q>X>\>`>d>h>l>p>t>
E0J0O0f0
0*1/181D1I1p1v1
2"2-2G2c2}2
5"6:6s6
9 9$9(9,9094989
: :':,:0:4:U:
;$;(;,;0;:=~=
4*404:4P4c4y4
555:5R5[5p5v5l:
t<x<|<
>'>/>J>1?
2!2+2j2
4Y5a5k6v6
839<9J9f9
< <$<*<.<4<8<
2'3-3V3q3
5X5`5s5~5
7&7I7N7Z7_7~7
8&8e8}8
99)9W9j9
:*:B:O:
;)<b<t<
020:0?0c0
2+2A2O2V2c2l2t2
5$5*51585?5F5M5T5[5c5k5s5
6#6)6/666=6D6K6R6Y6`6h6p6x6
7$7.7@7J7l7w7
7#8)898
:_;j;p;
5\7x9Z:
1R2X2j2{2
4"6-8`8
9N9Z9G:U:
<'=M=}=0>
0w011d1
7Q7^7h7v7
7%858K8^8x8
=7===I=N=S=X=a=
1%1v4^5i5y5
5K6L7\7m7u7
8+8?8E8
8:.:Q:b:h:t:
;5;;;D;J;T;_;
<!<,=S=m=|=
=$>U>b>k>
2%272I2[2m2
5"616v6
>/?B?R?
657?7W7
696I6b6
203G3|3
849Q9q9
4,5O5u5
:/:9:E:Q:^:c:m:z:
;";';1;>;C;M;Z;_;i;v;
< <*<4<><H<R<\<f<p<z<
d1h1l1p1t1x1|1
2$2,242<2D2L2T2\2d2l2t2|2
3$3,343<3D3L3T3\3d3l3t3|3
4$4,444<4L4T4\4d4l4t4|4
5$5,545<5D5L5T5\5d5l5t5|5
6$6,646<6D6L6T6\6d6l6t6|6
6H?L?P?T?X?\?`?d?h?l?p?t?x?|?
0H5L5P5T5X5\5`5d5p5t5x5|5
5(7,7074787P7T7X7
\0d0l0t0|0
; ;$;(;,;0;4;8;<;@;D;H;L;P;T;X;\;
3 3$3(3,3034383<3@3D3H3L3P3T3X3\3`3d3h3l3p3t3x3|3
:$:0:<:H:T:`:l:x:
; ;,;8;D;P;\;h;t;
<(<4<@<L<X<d<p<|<
5$505<5H5T5`5l5x5
9 9,989D9P9\9h9t9
= =$=(=,=0=4=8=<=@=D=H=L=D>H>\>`>p>t>x>
?4?D?H?X?\?`?d?l?
0$04080H0L0T0l0|0
1(1,1D1T1X1\1`1t1x1|1
2 2$2(2<2@2D2H2P2T2X2`2x2
3 30343D3H3L3T3l3|3
4$4(4<4@4P4T4X4\4d4h4|4
5 54585<5D5\5l5p5t5x5
6 6(6@6D6H6\6`6x6
7 7$7(7@7D7H7L7P7X7p7
9$9(9,949H9P9X9`9d9h9p9
:0:P:\:x:
; ;@;H;L;h;p;t;
;$<(<0<8<@<D<L<`<
=8=T=X=t=x=
> >@>`>h>p>x>
?D?X?h?x?
000<0\0d0p0
1(1H1T1\1
242@2`2h2t2
383D3d3p3
4 4@4H4T4t4
5$5,585\5d5l5t5|5
6$6D6L6T6`6
7$7,747@7H7
0<0\0|0
20545@5H5L5P5T5X5\5`5d5h5l5x5|5
5 6@6P6T6X6\6`6d6h6l6p6t6x6|6
7 7$7(7,7074787<7@7D7H7L7P7T7X7\7`7d7h7l7p7t7x7|7
8<8H8L8P8T8|8
>$>,>4><>D>L>T>\>d>l>t>|>
6,6X6x6
707L7h7
8(8D8d8
((((( H
h(((( H
H
mscoree.dll
AR6002
- floating point support not loaded
- not enough space for arguments
- not enough space for environment
- abort() has been called
- not enough space for thread data
- unexpected multithread lock error
- unexpected heap error
- unable to open console device
- not enough space for _onexit/atexit table
- pure virtual function call
- not enough space for stdio initialization
- not enough space for lowio initialization
- unable to initialize heap
- CRT not initialized
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- not enough space for locale information
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- inconsistent onexit begin-end variables
DOMAIN error
SING error
TLOSS error
runtime error
Runtime Error!
Program:
<program name unknown>
Microsoft Visual C++ Runtime Library
dkernel32.dll
ALC_ALL
LC_COLLATE
LC_CTYPE
LC_MONETARY
LC_NUMERIC
LC_TIME
Sunday
Monday
Tuesday
Wednesday
Thursday
Friday
Saturday
January
February
August
September
October
November
December
MM/dd/yy
dddd, MMMM dd, yyyy
HH:mm:ss
Aja-JP
(null)
USER32.DLL
american
american english
american-english
australian
belgian
canadian
chinese
chinese-hongkong
chinese-simplified
chinese-singapore
chinese-traditional
dutch-belgian
english-american
english-aus
english-belize
english-can
english-caribbean
english-ire
english-jamaica
english-nz
english-south africa
english-trinidad y tobago
english-uk
english-us
english-usa
french-belgian
french-canadian
french-luxembourg
french-swiss
german-austrian
german-lichtenstein
german-luxembourg
german-swiss
irish-english
italian-swiss
norwegian
norwegian-bokmal
norwegian-nynorsk
portuguese-brazilian
spanish-argentina
spanish-bolivia
spanish-chile
spanish-colombia
spanish-costa rica
spanish-dominican republic
spanish-ecuador
spanish-el salvador
spanish-guatemala
spanish-honduras
spanish-mexican
spanish-modern
spanish-nicaragua
spanish-panama
spanish-paraguay
spanish-peru
spanish-puerto rico
spanish-uruguay
spanish-venezuela
swedish-finland
america
britain
england
great britain
holland
hong-kong
new-zealand
pr china
pr-china
puerto-rico
slovak
south africa
south korea
south-africa
south-korea
trinidad & tobago
united-kingdom
united-states
CONOUT$
Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced
Hidden
SystemHandler
Winsrv
\Winsrv\winsvc.exe
\winsvc.exe
VS_VERSION_INFO
StringFileInfo
040904b0
CompanyName
Microsoft Corporation
FileDescription
System
FileVersion
6.0.0.1
InternalName
System
LegalCopyright
Copyright (C) 2026
OriginalFilename
System.exe
ProductName
System
ProductVersion
8.0.0.1
VarFileInfo
Translation
Antivirus Signature
Bkav W32.AIDetectMalware
Lionic Trojan.Win32.ClipBanker.Z!c
Elastic malicious (high confidence)
ClamAV Clean
CMC Clean
CAT-QuickHeal Trojan.ClipBanker
Skyhigh Artemis!Trojan
ALYac Gen:Variant.Zusy.571494
Cylance Unsafe
Zillya Clean
Sangfor Banker.Win32.Agent.Ajm1
CrowdStrike win/malicious_confidence_90% (W)
Alibaba TrojanBanker:Win32/ClipBanker.7306ebaa
K7GW Trojan ( 005c05021 )
K7AntiVirus Trojan ( 005c05021 )
huorong Clean
Baidu Clean
VirIT Clean
Paloalto generic.ml
Symantec ML.Attribute.HighConfidence
tehtris Clean
ESET-NOD32 a variant of Win32/ClipBanker.TT
APEX Malicious
Avast Win32:BankerX-gen [Trj]
Cynet Malicious (score: 99)
Kaspersky HEUR:Trojan-Banker.Win32.ClipBanker.gen
BitDefender Gen:Variant.Zusy.571494
NANO-Antivirus Clean
ViRobot Clean
MicroWorld-eScan Gen:Variant.Zusy.571494
Tencent Win32.Trojan-Banker.Clipbanker.Hkjl
Sophos Mal/Generic-S
F-Secure Trojan.TR/AD.Nekark.hchtx
DrWeb Clean
VIPRE Gen:Variant.Zusy.571494
TrendMicro TROJ_GEN.R002C0XB125
McAfeeD Real Protect-LS!240A6E1F4217
Trapmine Clean
CTX exe.trojan.clipbanker
Emsisoft Gen:Variant.Zusy.571494 (B)
Ikarus Trojan.Win32.Clipbanker
FireEye Generic.mg.240a6e1f4217e3eb
Jiangmin Clean
Webroot Clean
Varist W32/ABPWS.UNSA-9305
Avira TR/AD.Nekark.hchtx
Fortinet W32/ClipBanker.TT!tr
Antiy-AVL Trojan[Banker]/Win32.ClipBanker
Kingsoft malware.kb.a.762
Gridinsoft Trojan.Win32.CoinMiner.vl!n
Xcitium Clean
Arcabit Trojan.Zusy.D8B866
SUPERAntiSpyware Clean
Microsoft Trojan:Win32/Wacatac.B!ml
Google Detected
AhnLab-V3 Trojan/Win.Malex.R690725
Acronis Clean
McAfee Artemis!240A6E1F4217
TACHYON Clean
VBA32 BScope.Trojan.Malex
Malwarebytes Malware.AI.3608662227
Panda Clean
Zoner Clean
TrendMicro-HouseCall TROJ_GEN.R002C0XB125
Rising Trojan.Generic!8.C3 (CLOUD)
Yandex Clean
SentinelOne Static AI - Suspicious PE
MaxSecure Trojan.Malware.300983.susgen
GData Gen:Variant.Zusy.571494
AVG Win32:BankerX-gen [Trj]
DeepInstinct MALICIOUS
alibabacloud Trojan[stealer]:Win/ClipBanker.TS
No IRMA results available.