Static | ZeroBOX

PE Compile Time

1970-01-01 09:00:00

PE Imphash

02549ff92b49cce693542fc9afb10102

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x000014e0 0x00001600 5.37324871503
.rdata 0x00003000 0x00005d6e 0x00005e00 7.86821940404
.bss 0x00009000 0x00000fac 0x00000000 0.0
.pdata 0x0000a000 0x00000090 0x00000200 1.20871562712

Imports

Library msvcrt.dll:
0x408b6c malloc
0x408b74 memset
0x408b7c _get_pgmptr
0x408b84 getenv
0x408b8c sprintf
0x408b94 __argc
0x408b9c __argv
0x408ba4 _environ
0x408bac _XcptFilter
0x408bb4 __set_app_type
0x408bbc _controlfp
0x408bc4 __getmainargs
0x408bcc exit
Library kernel32.dll:
0x408bdc Sleep
0x408be4 CreateProcessA

!This program cannot be run in DOS mode.
`.rdata
.pdata
cz)(e.8t7!sw!il!h6izuh):c0)$s&3&
qez+0Q
',ty=#
$=kpm\k
h):c0)$s&3&cz)(e.8t7!sw!il!h6izuh):c0)$s&3&cz)(e.8t7!sw!il!h6izuh):c0)$s&3&cz)(e.8t7!sw!il!h6izui):c3)$s&3&cz)(e:k
G@GXRE
r!.(EY
,D8C3N
x0JOv\
mG0E;^pP\
:a)yA]
#[vPgY-
T&opFz)G#p
{bl3+M
i44jW<
|{ sfG
~Yv3p&
969d Qw
tDjb2
o6%?0{h
X_\9Gr
`Xy {`
W<Us|V
nQXHH)
cA9yV-
jCc+&F
|S5G?|
$Z'izT
j!h~Rx
ph)rX2\):
fz)`^l0
'h6!Aw
!av2!`>$
Hw6;+7wg
+s5-h~$yp
y}0)eX
)/&>~{7q|e%gdn
`4izu
eW_"il!
9rw!,_
:a0) s&3j
)8c0!$s&
8c0h{2xr{"&vv>s
rMb >~{7q|e%gdn
cu!i B
yn!hw6;+)t{?owy
4P1NBq
,Xn!h~
h{9t7i
Kz((ef
Haj6i3
f0)lH$F++
l0iz=S+Onx
3&+Ak
uw!!W#
JM2uh+:
XWb7S`
<%qrr",h
^az)lD
v~2)`53
x'bw$6u(:`?~
$cz+]a
i6i;*)w{?owy(
/8t7TH3
-%s&@6"y
'$Y$;%
B=t7UA?
\,$s$<
))e.^5<
Z (e.|
!q%qrr"/h~$yp
u8lAV7
Q*e.yw
4p7!2O
@v7!2t
Yj6iA9LiH
p&3g<;wi8od+i|
q/#?hn"ehr2q{
'0-BJa7)
4w7!7O
rMRui):"
[x&3cZ-\Hb
i&s&ry"$hu$rg*j
BMZ ?hl+
'saz)(!
M.9t7m
Qk6i[)L
m?wh):
Hal6i3
^U?hn"ehr2q{
8TiO;"
:?iJvUd-"
(5X6%y
w6;+)t{?o
{-h~$yp
mx4X)s
o,s7!s
3Rs@+]if
)$s&3&cz)(e.8t7!sw!il!h6iz
msvcrt.dll
malloc
memset
_get_pgmptr
getenv
sprintf
__argc
__argv
_environ
_XcptFilter
__set_app_type
_controlfp
__getmainargs
kernel32.dll
CreateProcessA
SetUnhandledExceptionFilter
Antivirus Signature
Bkav W64.AIDetectMalware
Lionic Trojan.Win32.Donut.4!c
Elastic malicious (high confidence)
ClamAV Clean
CMC Clean
CAT-QuickHeal Trojan.Ghanarava.17413374787c5af4
Skyhigh BehavesLike.Win64.Agent.qm
ALYac Trojan.GenericKDZ.78844
Cylance Unsafe
Zillya Trojan.Agent.Win64.9278
Sangfor Suspicious.Win32.Save.a
CrowdStrike win/malicious_confidence_100% (W)
Alibaba Trojan:Win64/Generic.fe613c75
K7GW Trojan ( 0058be4b1 )
K7AntiVirus Trojan ( 0058be4b1 )
huorong TrojanDropper/W64.Agent.q
Baidu Clean
VirIT Trojan.Win64.Genus.GBD
Paloalto generic.ml
Symantec Trojan.Gen.MBT
tehtris Generic.Malware
ESET-NOD32 a variant of Win64/Agent.AVO
APEX Malicious
Avast Win64:Evo-gen [Trj]
Cynet Malicious (score: 100)
Kaspersky UDS:DangerousObject.Multi.Generic
BitDefender Trojan.GenericKDZ.78844
NANO-Antivirus Trojan.Win64.GenericKDZ.kvqnsc
ViRobot Trojan.Win.Z.Donut.51712
MicroWorld-eScan Trojan.GenericKDZ.78844
Tencent Trojan.Win64.Donut.zb
Sophos Troj/Donut-G
F-Secure Trojan.TR/Agent.wveom
DrWeb Trojan.DownLoader6.32179
VIPRE Trojan.GenericKDZ.78844
TrendMicro Clean
McAfeeD ti!3CEF6251EA6A
Trapmine Clean
CTX exe.trojan.donut
Emsisoft Trojan.Agent (A)
Ikarus Trojan.Win64.Crypt
FireEye Generic.mg.64d97ceac5d0fbb3
Jiangmin Trojan.Donut.il
Webroot W32.Trojan.Gen
Varist W64/Agent.DMU.gen!Eldorado
Avira TR/Agent.wveom
Fortinet W64/Kryptik.CZF!tr
Antiy-AVL Trojan/Win64.Donut
Kingsoft Win32.Trojan.Generic.a
Gridinsoft Trojan.Win64.Agent.sa
Xcitium Clean
Arcabit Trojan.Generic.D133FC
SUPERAntiSpyware Clean
Microsoft Trojan:Win64/Donut!rfn
Google Detected
AhnLab-V3 Trojan/Win.Generic.R444976
Acronis Clean
McAfee Agent-FPX!64D97CEAC5D0
TACHYON Clean
VBA32 Trojan.Win64.Donut
Malwarebytes Generic.Malware.AI.DDS
Panda Trj/CI.A
Zoner Clean
TrendMicro-HouseCall Clean
Rising Trojan.Kryptik/x64!1.DDE6 (CLASSIC)
Yandex Clean
SentinelOne Static AI - Suspicious PE
MaxSecure Trojan.Malware.316908000.susgen
GData Win64.Trojan.Kryptik.SG
AVG Win64:Evo-gen [Trj]
DeepInstinct MALICIOUS
alibabacloud Trojan[dropper]:Win/Agent.AVO
No IRMA results available.