Static | ZeroBOX

PE Compile Time

1970-01-01 09:00:00

PE Imphash

8adddf41765404439890a4fea2ba14c8

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x0000c3b0 0x0000c400 5.5181115971
.data 0x0000e000 0x00000908 0x00000a00 3.96591156953
.pdata 0x0000f000 0x00000420 0x00000600 2.97827575921
.ofh 0x00010000 0x00006e17 0x00007000 5.63500484955

Imports

Library msvcrt.dll:
0x40e4bc malloc
0x40e4c4 strcat
0x40e4cc sprintf
0x40e4d4 free
0x40e4dc memset
0x40e4e4 calloc
0x40e4ec gets
0x40e4f4 vsprintf
0x40e4fc getenv
0x40e504 system
0x40e50c abort
0x40e514 atexit
0x40e51c _getcwd
0x40e524 tolower
0x40e52c toupper
0x40e534 strstr
0x40e53c strncpy
0x40e544 sscanf
0x40e54c _vsnprintf
0x40e554 _strdup
0x40e55c _controlfp
0x40e564 __set_app_type
0x40e56c __argc
0x40e574 __argv
0x40e57c _environ
0x40e584 __getmainargs
0x40e58c exit
Library kernel32.dll:
0x40e59c WriteConsoleA
0x40e5a4 GetStdHandle
0x40e5ac GetModuleHandleA
0x40e5b4 IsDebuggerPresent
0x40e5bc GetLastError
0x40e5c4 FreeLibrary
0x40e5cc VirtualAlloc
0x40e5d4 Sleep
0x40e5dc GetStartupInfoA
0x40e5e4 GetCommandLineA

!This program cannot be run in DOS mode.
`.data
.pdata
DZ]Z]VG
XVA]V_
@VGFCRCZ
`VGFCwZtVGp_R@@wVE@r
`VGFCwZv]F^wVEZPVz]U\
~ZPA\@\UG
}VGD\AX
rWRCGVA
tZTRQZG
qRPXC_R]V
p\]]VPGZ\]
rWRCGVA
aVR_GVX
vG[VA]VG
}VGD\AX
p\]]VPGZ\]
tZTRQZG
}VGD\AX
p\]]VPGZ\]
eZAGz|
vG[VA]VG
rWRCGVA
`VGFCwZtVGwVEZPVaVTZ@GAJcA\CVAGJr
`VGFCwZwV@GA\JwVEZPVz]U\
eZAGFR_r__\P
ZQARAJ
z]GVA]VG|CV]r
z]GVA]VGp\]]VPGr
{GGC|CV]aVBFV@Gr
{GGC`V]WaVBFV@Gr
z]GVA]VGaVRWuZ_V
z]GVA]VGp_\@V{R]W_V
w\D]_\RWVA
WTUR@W
Library
sprintf
fclose
fwrite
strcpy
strtok
memcpy
strchr
strrchr
realloc
msvcrt.dll
malloc
strcat
sprintf
memset
calloc
vsprintf
getenv
system
atexit
_getcwd
tolower
toupper
strstr
strncpy
sscanf
_vsnprintf
_strdup
_controlfp
__set_app_type
__argc
__argv
_environ
__getmainargs
kernel32.dll
WriteConsoleA
GetStdHandle
GetModuleHandleA
IsDebuggerPresent
GetLastError
FreeLibrary
VirtualAlloc
GetStartupInfoA
GetCommandLineA
lziodo
hPtvArw
xlziod
IhPtvAr
mxbqns
Antivirus Signature
Bkav Clean
Lionic Trojan.Win32.Caynamer.4!c
Elastic malicious (moderate confidence)
ClamAV Clean
CMC Clean
CAT-QuickHeal cld.trojan.multi
Skyhigh BehavesLike.Win64.Generic.mm
ALYac Trojan.GenericKD.75771014
Cylance Unsafe
Zillya Clean
CrowdStrike win/malicious_confidence_100% (W)
Alibaba Clean
K7GW Clean
K7AntiVirus Clean
huorong Clean
Baidu Clean
VirIT Clean
Paloalto generic.ml
Symantec ML.Attribute.HighConfidence
tehtris Clean
ESET-NOD32 Clean
APEX Malicious
Avast Win64:MalwareX-gen [Trj]
Cynet Malicious (score: 100)
Kaspersky UDS:DangerousObject.Multi.Generic
BitDefender Trojan.GenericKD.75771014
NANO-Antivirus Clean
ViRobot Clean
MicroWorld-eScan Trojan.GenericKD.75771014
Tencent Clean
Sophos Mal/Generic-S
F-Secure Clean
DrWeb Clean
VIPRE Trojan.GenericKD.75771014
TrendMicro Clean
McAfeeD ti!9BADD465F31D
Trapmine Clean
CTX exe.trojan.caynamer
Emsisoft Trojan.GenericKD.75771014 (B)
Ikarus Clean
FireEye Generic.mg.f0328a0d719b2a80
Jiangmin Clean
Webroot Clean
Varist W64/ABTrojan.PGTP-7179
Avira Clean
Fortinet W32/PossibleThreat
Antiy-AVL Trojan/Win32.Caynamer
Kingsoft malware.kb.a.931
Gridinsoft Clean
Xcitium Clean
Arcabit Trojan.Generic.D4842C86
SUPERAntiSpyware Clean
Microsoft Trojan:Win32/Caynamer.A!ml
Google Detected
AhnLab-V3 Trojan/Win.Generic.C5726525
Acronis Clean
McAfee Artemis!F0328A0D719B
TACHYON Clean
VBA32 Trojan.Caynamer
Malwarebytes Generic.Malware/Suspicious
Panda Trj/Chgt.AD
Zoner Clean
TrendMicro-HouseCall Clean
Rising Malware.Generic!8.BA4C (CLOUD)
Yandex Clean
SentinelOne Static AI - Suspicious PE
GData Trojan.GenericKD.75771014
AVG Win64:MalwareX-gen [Trj]
DeepInstinct MALICIOUS
alibabacloud Software:Multi/Caynamer.A9nj
No IRMA results available.