Static | ZeroBOX

PE Compile Time

2025-03-23 08:00:02

PE Imphash

cb896cc131f330cdee60d6baa952b83a

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x002062e8 0x00206400 6.39875108806
.data 0x00208000 0x0000c090 0x0000c200 7.85886732774
.rdata 0x00215000 0x00038768 0x00038800 7.85588078103
.pdata 0x0024e000 0x000071dc 0x00007200 6.14924678773
.xdata 0x00256000 0x000055d8 0x00005600 3.45572189822
.bss 0x0025c000 0x00094760 0x00000000 0.0
.idata 0x002f1000 0x0000050c 0x00000600 3.77787869397
.CRT 0x002f2000 0x00000030 0x00000200 0.191963156087
.tls 0x002f3000 0x00000010 0x00000200 0.0
.rsrc 0x002f4000 0x00000138 0x00000200 1.6285554479
.reloc 0x002f5000 0x000003e8 0x00000400 5.22102190475

Resources

Name Offset Size Language Sub-language File type
RT_VERSION 0x002f4058 0x000000dc LANG_ENGLISH SUBLANG_ENGLISH_US data

Imports

Library ADVAPI32.dll:
0x1402f1178 RegCreateKeyExW
0x1402f1180 RegQueryValueExW
Library KERNEL32.dll:
0x1402f1190 GetACP
0x1402f1198 GetComputerNameW
0x1402f11a0 GetProcAddress
0x1402f11a8 GetProfileStringW
0x1402f11b8 LoadLibraryA
0x1402f11c8 Sleep
0x1402f11d0 TlsAlloc
0x1402f11d8 TlsGetValue
0x1402f11e0 TlsSetValue
0x1402f11e8 VirtualFree
0x1402f11f0 VirtualProtect
0x1402f11f8 VirtualProtectEx
0x1402f1200 VirtualQuery
0x1402f1208 VirtualUnlock
Library msvcrt.dll:
0x1402f1218 __C_specific_handler
0x1402f1220 atexit
0x1402f1228 calloc
0x1402f1230 exit
0x1402f1238 free
0x1402f1240 malloc
0x1402f1248 memcpy
0x1402f1250 memset
0x1402f1258 realloc
0x1402f1260 signal
Library USER32.dll:
0x1402f1270 DispatchMessageW
0x1402f1278 SystemParametersInfoW

!This program cannot be run in DOS mode.
`.data
.rdata
@.pdata
@.xdata
.idata
@.reloc
D$$=So
koQ%gJ;
D$,=:.a
q>OD!
L$O=*F
D$,=So
q>OD!
q>OD!
q>OD!
AWAVVWSH
<LB6l
KLQ0ms|
LQ0ms|
[_^A^A_
[w7r5,8
ffffff.
q>OD!
L$`=r.K
L$PH;B
aHR?E1
fffff.
D$t=C!
D$XH=>
L$h=:.a
O3{=PW
L$7=>,Ct
D$$=So
D$$=XEa"
5#h>FD
D$$=O.
dKZt->7
1E.*YO
JHH;J@H
L$(H9H@
L$/=YIA
9V2~o4H
L$ =X<
24ThA!
}%24Th
L$8=tq
@&=QY_,
G5<LjE)
B:oWb
B:oWb
{(0r5{(0r
k\EsL1
ffffff.
-%*Q_i
D$,=y[&7
0oO.OH
L$8H;B
ffffff.
L$'=2G
<<@-M1
ffffff.
#$14H1
ffffff.
D$$=mcz
x1n~D1
-dj;i)
L$8H;B
fffff.
L$8H;B
L$PH;B
D$$=`K
fffff.
$+yj}I
fffff.
L$G=.ZF
`$u~-`
8P|`KI
L$PH;B
fffff.
:G!kL1
L$8H;B
L$pH;B
L$G=&@
fffff.
ffffff.
L$`H;B
D$4=e?
L$'=&-
L$?=PN
ffffff.
L$_=x+
ffffff.
pME_A1
ffffff.
L$/=Gj
L$?=o6
L$G=)z*$
A93^D)
-A93^E1
L$.=UvC
-Ewi_b
,Ewi_b
AXH;Ah
ffffff.
fffff.
D$(=Rh[
D$PH9QXH
fffff.
L$(="|
L$/="r
V6izI1
7}5mD!
4=XEa"
L$p= F
L$(=80
?OwYM1
2."5Dz
L$/=^w
ffffff.
KLQ0ms|
Yg)NL1
-N0HI
4 qZE)
D$$=C
ffffff.
fffff.
ffffff.
L$/=RM
wh:5H)
AR/06%H
5kO!/i
L$X=yX
%-O*(%
L$>=AD
L$ =W[
sY=&@)
-Q<wQ=
:O5!H1
ffffff.
D$4=c}
fffff.
ffffff.
L$(="r
L$X=+N^
L$HH;B
L$HH;B
bQyxH1
_Q^frH
L$HH;B
D$4=2u
UAVVWSH
WQc,vL1
WQc,vL
[_^A^]
i;a|)S<2I
3;?H1
L$'=_.
L$HH;B
L$/=BZ-
]d0AI;
L$XH;B
fffff.
%Ags<=
fffff.
fffff.
4gIOcr
4gIOcr
"JlbI1
L$W=6nQ
ffffff.
L$/=weBH
L$HH;B
L$?=/L
eX[_^]
ffffff.
fffff.
oaV]H!
oaV]I1
ffffff.
;<y+H1
xOW4L1
fffff.
M/=n5.
ffffff.
fffff.
fffff.
L$HH;B
D$$=Vg.
i-G"D1
=yNZ\
wf/+5#=
D$$=So
fffff.
q>OD!
q>OD!
S/SVL1
L$(=;4
L$PH;B
aHR?E1
`|yH1
L$XH;B
%2}8[M
%2}8[i
M=a].
ffffff.
({;#A!
%2}8[=
5uj!5D
D$,=*F
L$/=(d{%
D$,=x6
wj:5=)
(fLVL1
fffff.
jE.sE1
ffffff.
ffffff.
D$$=BZ-
ffffff.
fffff.
D$$=UY
fffff.
L$P=9w&
D$D=B7
Q@ASdr[:L1
-)E:GA
D$$=,V
0<#{5o
L$/=sm
D$$=>f
fffff.
fffff.
fffff.
D$,=Xt+
ffffff.
fffff.
ffffff.
fffff.
DR*2D)
;O5!D)
I=D=<@
{L%,Y-2
fffff.
q>OD!
q>OD!
ffffff.
S/SVL1
ffffff.
L$G="zJ
ffffff.
q>OD!
`enPH1
jKN-&H
jKN-fH1
~C[b5|C[b
]f5uZf
koQ%gJ;
xQ!M5U
|d$ZqM1
JoLgH1
ffffff.
ffffff.
M7=Ipaj
Yg)NL1
L$0=fR
L$`=;0
L$?=}C
|d$ZqL1
JoLgM1
KLQ0ms|
$*QH1
R~iFD!
ZqX5}ZqX
?OwYM1
L$_=rwT
{L%,Y-2
L$(H#J(H
a|y-V
{L%,Y-2=
-xLO5=F
L$g=9U
ffffff.
5kO!/=
M?=8CZ
x6f5j4f
AWAVATVWSH
[_^A\A^A_
D$$=So
ffffff.
q>OD!
q>OD!
fffff.
kf5hkf
L$0=MZ
fffff.
lfc-fl
L$/=80
D$8HcH
"JB2UT
UAWAVAUATVWSH
KLQ0ms|
KLQ0ms|
'6SfM1
[_^A\A]A^A_]
q>OD!
L$/=!d
L$7=Q:
fffff.
yM.E1
D$ =DR}
F)PH(/
F)PH(/
UAVVWSH
hLZt?H
hLZt?H1
4"zY56"zYA
[_^A^]
ffffff.
fffff.
-,/%;-
D$4=24Th
HfyL1
D$,=n5\
L$/=!K.
@^8*.H
@^8*.H1
2D%0z{==#
B-$3BB
%doAH1
-CFI9H
L$'=kX
D$$=So
ffffff.
ffffff.
L$7=;4
L$pH;B
M=>,Ct
y_QmD!
j=LTT
JoLgI1
ffffff.
D$$=So
fffff.
fffff.
q>OD!
q>OD!
ffffff.
%2}8[i
L$/=r.K
L$/=VI
L$/=hVG
)iULE1
aHR?E1
%2}8[i
}3}5#
H.!e\|
H.!e\|
ffffff.
uhQkH1
D$ w23
L$/=A7{
f?di=AH
f?di=AH1
t4}c-R
ffffff.
ffffff.
fffff.
UAWAVAUATVWSH
3ck-N0H
V6izD!
[_^A\A]A^A_]
D$ \E1
L$u=Mi
ffffff.
fffff.
L$?=IZ
:"M-D1
ef5clf
F]seD1
fffff.
4gIOcr
4gIOcr
%4uLyA!
L$?=Yq
q>OD!
q>OD!
%2}8[i
f@*@H1
L$'=^4
q>OD!
q>OD!
L$/=!d
L$/=;4
L$W= F
D$4=80
ffffff.
;CedGD
T$`H;AhH
T$8H;AxH
"L'7M1
wA^A$M1
0d$M1
I0b}D1
ylHOCL1
D$$=So
D$4=yi
-4XT9=y
D$$=O.
L$'=\N 7
UAWAVAUATVWSH
D$ /[C
y5r}Q^
[_^A\A]A^A_]
PB,V%Qc,vH
QeLfI1
5:n+W!
|=8d>8
D$$=So
D$4=yi
q>OD!
q>OD!
ffffff.
UAVVWSH
H.!e\|
H.!e\|
[_^A^]
L$N=hF
L$7=Ui/
L$8H9Q
L$(H;A
VC%4D)
UAWAVAUATVWSH
&[58N5H
&[58N5I1
[_^A\A]A^A_]
Vu5eKL1
D$,=8CZ
a!>FH1
I=D=<@
ffffff.
nAXSoI
@505kh
%|~nc5
L$7=]7
5~ho>!
fffff.
hA5T>
5k$*}=
0j05L1
t4}cH)
ffffff.
fffff.
ffffff.
L$G=`5
fffff.
a!>FH1
D$D=uj!5
^4+oWz
`|y_H1
D$,=So
D$,=XEa"
D$D=">J
ffffff.
L$(=Y]
q>OD!
ffffff.
4YkMH1
bQyxH1
_Q^frH
L$HH;B
:mu7-R
X:mu7-R
6Dp)7XEL1
'Nf5EEf
UAWAVAUATVWS
MM&*D1
c,HWL1
[_^A\A]A^A_]
i^zJlH
-h2v1-
UAVVWSH
q~}x5SQ
0Us$D!
xZR5zZRA
?}FeL1
+6j=4NY
[_^A^]
fffff.
M?=4uLy
UAWAVATVWSH
3){){I
Ik8=u't
]:\H1
[_^A\A^A_]
Z(H9E1
fffff.
<jV(H1
!1k(-OI
/D^QtH
/D^QtH1
`$%!Y H
`$%!Y H1
fffff.
UAWAVAUATVWSH
kBMM1
[_^A\A]A^A_]
fffff.
L$HH;B
fffff.
H.!e\|
H.!e\|
fffff.
8OBdp,M
8OBdp,M
H.!e\|
ffffff.
fffff.
"L'7H1
xh:557
hlN^L1
Yg)NL1
L$?=t_
"L'7M1
D$4=u#Y
D$,=Qa
=es#5s
-N0HH
-N0HH1
k])!D!
<euI1
ffffff.
ffffff.
D$ 8W?$
L$0=r.K
D$4=]7
D$X=;C&
c3YLL1
H.!e\|
D$,=G=
NI6OkO
,Z7zII
fffff.
I?FE)
j<`pD1
k])!E!
JFe%lo
[@dKH1
F)PH5G)PH
ffffff.
%V6izi
UAWAVAUATVWS
<Rt%A1
Wf5t_f
y[a;5z
[_^A\A]A^A_]
uma5umaD)
nAXSoH
nAXSoH1
oUf5w]f
5k$*}%
UAWAVAUATVWS
,/%;D!
&[58N5L1
&[58N5H
G3=O[(
[_^A\A]A^A_]
x5cv`[A1
UAVVWS
fh6XH1
28X>D1
W+%f5U+%f
[_^A^]
F)PH(/
N)PH(/
fffff.
L$(=KZ
:isLIl
:isLIl
KLQ0ms|
KLQ0ms|EL1
|'!WQ<wQH
t'!WQ<wQI1
ffffff.
L$8H;B
jKN-&I
jKN-fL1
fffff.
q hW_
5F"XgA
%2}8[i
ffffff.
KLQ05Ox
ffffff.
ffffff.
ffffff.
t)sMA1
L$0=%m
MHH;A(
L$8H9H
fffff.
PO5PSV@57
ffffff.
fffff.
-xh:5)
ffffff.
e([_^]
L$'=;8
L$G=;8
ffffff.
5.GrR3
mf5:if
3t*qL1
D2r9E!
h]~MH1
M7=|'!W
$y%c?H1
/U=Yi%o
%S[yO=,J
Q<ruD)
w;|`=#c
'f5f,f
M6='UF
GtF(W/
GtF(W/
ffffff.
L$7=/]q
D$0=sm
ffffff.
jKN-&I
KLQ0ms|
KLQ0ms|EH1
^4+oWz
<a~vY[S
JoLgH1
L$0=So
L$G=q(
`enPM1
L$/=VI
%+wEsI
6k1J[;L1
6k1J[;H
dKZt->7
d9f5G8f
h]~MH1
-Q<wQ=
D$l=rw
%?xndH
fffff.
f=(d{%
n"E*MH1
sqic2EwI
fffff.
%2}8[=
fffff.
3S@&H1
>4MoD1
524ThE
D$$=So
f=(d{%
=CCG u
e!ib;Y
YV`'P;
PrH8sF
Uw#Y;
L~]voA
=9pm]DZD
y'v,T
E"|iDt
aHR?'z
Kr!ib;
ZR!,/%;
Z1|"S>
4bEa)E
L\>/pM
|Hk*eb
k.&:O
S3c2Ew
aHR?'z
S3c2Ew
aHR?QL{A
i_),jA
/{lZ1f3
|XKm:#P2
Aqd=]}
Z(xkAw
}X#K.T
4qkwj
pO9#Vt
A-IQo"
Ff2}8[
(OvDem
kO!/(n
-sW=0
U dYf>
b#jh+7
bxS6ot
3r]aR"H
1nlf&6*
rWdj;iJ
zEa)Ea;
aHR?$"Q0K
/hF~
)5zg?*M~z
*,a F3
HF\F1k8}"/TQ
dg4K8i
A~_!_F
y81|"S ]
YYYYYYYYXXXX[[[[ZZZZ]]]]\\\\Y
YX[Z]\_^QQPPSSRRUUUUTTTTWWWWVVVVIIIIIIIIHHHHHHHHKKKKKKKKJJJJJJJJMMMMMMMMMMMMMMMMLLLLLLLLLLLLLLLLOOOOOOOOOOOOOOOONNNNNNNNNNNNNNNNAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@CCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBEe
e5e%eUeu
YYYYXX[[ZZ]]\\__^^QQPPSSRRUUTT
IHKYQ^P_S\R]UZT[WXV
YX[Z]]\\____^^^^QQQQQQQQPPPPPPPPSSSSSSSSSSSSSSSSRRRRRRRRRRRRRRRRUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVV;$
)5zg?*M~s
q>OSd
P-O*(z
UT$"Q0K
6cdRwO
HF\F1k8}
6,#9{_i
aHR?\
mO!dKZtL
|~ncdg4KX
!)Iv0g
Rl[AwW:
p>kiM21
a4zV@a;-wB
-O*(LIl
lj6k[.
P-O*(t3
aHR?'z
y81|"S ]
aHR?'z
4bEa)E
Y?xndL
aHR?'z
M/4&_[
r$"Q0K
zEa)Ea;
3XAlS{
aHR?'z
A^i"z:[
9ors$H
1Q?hch
HF\F1k8}"/TQ
|~ncdg4KX
aHR?'z
aHR?'z
^*>U;Q
<3dzP:i
+iklMj<
aHR?'z
k~WPi'
P47a,7
'Ylx%"'
Nc2Ewe
t~!{_i
`b[.N!
EI4H,
InitializeCriticalSection
InitializeConditionVariable
EnterCriticalSection
LeaveCriticalSection
WakeConditionVariable
SleepConditionVariableCS
DeleteCriticalSection
@kernel32
@kernel32
CreateThread
WaitForSingleObject
@kernel32
@kernel32
00010203040506070809101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899
VirtualAlloc
@kernel32
@kernel32
ExitProcess
@kernel32
@0123456789ABCDEF
inet_ntop
GetSystemTimeAsFileTime
@Ws2_32.dll
@kernel32
@kernel32
PdRnN^
Pdh`RhbN^
PljdRnRnRnN
Pdh`Rhb
dlTfhb`T|nbhT
ljnjff
Inljhfdb`~|
*fJ5fl
PdRnN^
PbndRlRldN^
Pl`RfRlN
PbndRlRld
PdRnN^
Pdh`RhbN^
PljjRnRnRnN
Pdh`Rhb
hBkv<[
Inljhfdb`~|
Inljhfdb`~|
LoadLibraryA
GetProcAddress
GetLastError
GetProcessHeap
SetErrorMode
VirtualAlloc
VirtualFree
OpenProcess
CloseHandle
VirtualAllocEx
@kernel32
@kernel32
ShowWindow
@user32
@user32
GetFileVersionInfoSizeW
GetFileVersionInfoW
VerQueryValueW
@version
@version
GetModuleFileNameExW
EnumProcessModulesEx
GetModuleBaseNameW
@psapi
@psapi
1S{*lq
GetSystemInfo
@kernel32
@kernel32
@uCRMbcRbzwsj8T488ObFId0iWXZxO0
GxxruBE
pyNK6{
U3dzy!
a+6k.']r
iQYi5)
ZJAfK:W
'xx[3
("WAhP
UWbeFb,
} 4{2CTr
#Gl{jd
"|dOh:
ARw4]c
mVTq_(
T)Kqu3&
_&x]0I
Tb=j<X
Y.t?P
\%6(BGZ
S~@sCSpu
#0<8It
QMf/N
aum|i21d
fl=2aN
(4C "O
u\@!{G
?cd4(
:dzy2k
VOKae@8
Iqg#)K
^"_S-D
Zxp-.H
#_%J",`
sY]z,S
.c}N?Ns&
_l|cFK
fNSzF:i
O`e?Ec:
:PiMPJ
pDqf0^
>\G"|Cv
Us'GO#
,_FDC1r
69c(5u
15;'f
qx^,TX
})6V)6
p7\O\0
Hw2KCe
;Za3u:
qHMlle
JNf.D
Gd{PV^`
at`Im$
*GQ9o8o
0n8OoA
a!Hzg=T
i`^=[/
PB{x@x
]il~7rx
n/:UP
U4,\53
<F5!~C
p"{3xa
&D9P!b
nn[YrJ
"n_=vO)
{7Wj^
k37o`{
+8<.)-
QSdR!
dznU(Zd
4:y}L+
* S 25-
^^K+ox
up5.[#_Y
FrObuu
F7;Fx!
dbE_$=N
Dp}eO1
Grl Tm
ozN--&SS
CLB1<3
E @^Jm\q
&XVOoU
D`G`>u_
g56"W4K
V8dD62
L0A!I5
2J"~M#
4/i?keS
C!T>se9
i >="/
4I1DF;
g{;{HpI
oCA+X9P
+'..~+m
K.]@+G%
[WSpi(l
A:zHwc
wU>&FQd
\"-]3q6p
23TRs~
NN`*_Qt
VlM'+n'
Qma!"/
.&Y0{`
( 9-T/
H{}%a&
[$qhO
,`DlDZ
t KWXi&r
]+h`^h#
w'm9`P]
2^>hH"
DB"[Ba
.2K^z
nrM4b#
cMw_3Z
Cl>_$G
3>Sd#~
GId`@@~
Rr)rQ=QQ
\TBI|g
$.*!K{1
]/,vH>
sD/QQNN
s608c\
b]vc`M2E
JtX1#G
g@j`{y
qTd"uE
!r)CDd
c/[:RXU
]7u3}{:
:PsDCk4
I|k&00^
EtZATt
kir,_
Q%O)P_2
s'yYrb
MK`b-b5
FZR,PK4
nA+;?"
4"$N}g
5L~VaR
&toKB
\5]V%[_%
|8xLOD
6i4[E,
*GA{T^
ym~@[C.
N`Jj5i
0z`EF*9
9W]fdK
#&QbJM
y*!wlvo<
0oyWb!\
aWPdm)
41gRTL
@Dw,#V
e<@yq3
-QnG\ M
Zs"Bz0
E_1fW!
)SGQ_]
9&^Bdpuq
jaTK)5
8&%XvV
JyV+cq
A(Me"Gn
b><h*!
{wUr%Sl
&=\3&D3
]x'qQn
6Pf%'i'0
1J3H(5
,Z%*VO
Iy:Lxxc
._hQrx
[;[4wV
W)x#f#
b;kUFD
#8S+tX
j3B):&
02#!gV
k(IHD{g
i<b7d|
L^NIS>
5u.*6S
<Y<}{4
7.I^s^x
pwZzi_Mj
&a_Cs?
'h<Z]17
%{92,-
I/Xhib
sahri1
~"HQ8n
_jXW5p
mA_*Rd
\Wk'MzEO
`<o"zT
1I{KOH
K7.tiwY
1z0|;~=:
.z:"AS
/o!.])4f
15NvPcb0{
P;a/e
{6\x~#
d-zRZO))U
K|*ubViU"h
x1owyjQ
gW`"Ig
PQwKr*
a%/tL+
t[F#`G
[P*lC>W
&&gM9b^
h[:4oW
B{C~gJ
#LWA'h
2xn[ ]
5%,S4]d
upNJ&j
xZ*k5c#
P&HGS0
T$4Rp\
><07j]
P8ouWH(
1raA`#?05`|NM&XYH
}^ZGwjI
s}YP},=
ut9`j+*Z
qKw'wwg
!ErKUG
]tN65Q
po3SzJr
3ri>g~W
Qj</s*
2%<":*8:`
0s^V?^
(:"pt#
V/d}ej
O\crW]
HR>jZ-
qz 5BF
dMa\"a
r>;u$-gtZI
U"X'c\
o1y[<:4
-1/vS_
fS.=1PW~A
He <MAx
zHBlJ
Yrf+>_t
|%Lz3
t~8f-A
{:XhCo>
"M2\9O*
5ef?B'
Qa-'j%
h>GJcg
p&Aa1+1
B=@Zlp
&*G_z*
.shUs_/q
,V-^<
aQS`w2
H>z(:?
;6O?{)
;|)kW-
X!TE~6(
MP2gD*:
9evtSp
R ZBgpx,
U.r$R?
TaO:61W
P\"Ut\
/8!E'P
#~VGm,
ZT8Cr,
B$9K<`
{@F,T[9iU
,R7==K
~Q5J:;T
il*DBiX
V`Idv,
E%wb!c
g*"|bb
ub=X[J
,z<z}3
Zgj%X6
\&^_0V
$XFSnK}W
|]!Nu!
V+gW7]H
OE-E0(
*\wurX
9?{_:Q
*r^;*j
w]rXou\
:X{+~X[*z
v^OUv^
U{^f(6
*v^O]v^
5bGsr^
rX>U{^n
Xy*{^6RsX
6^o!~^
r^;**P
O2{Xz)x
{^vP:^
%rXw%{m>
>\w%rXw%~\o!
rXg%v^
9/{Xz*
rXw5|X6
O&r\w=~^
@iwZLXRQzeGjqrCkt7p
@SUX4xgWIJ7JBgax4R0AQ
@filemanager1
RegCreateKeyExW
RegQueryValueExW
GetACP
GetComputerNameW
GetProcAddress
GetProfileStringW
InitializeCriticalSection
LoadLibraryA
SetUnhandledExceptionFilter
TlsAlloc
TlsGetValue
TlsSetValue
VirtualFree
VirtualProtect
VirtualProtectEx
VirtualQuery
VirtualUnlock
__C_specific_handler
atexit
calloc
malloc
memcpy
memset
realloc
signal
DispatchMessageW
SystemParametersInfoW
ADVAPI32.dll
KERNEL32.dll
msvcrt.dll
USER32.dll
VS_VERSION_INFO
StringFileInfo
040904E4
VarFileInfo
Translation
Antivirus Signature
Bkav Clean
Lionic Trojan.Win32.GenericML.4!c
Elastic malicious (high confidence)
ClamAV Clean
CMC Clean
CAT-QuickHeal Trojan.Genericml
Skyhigh BehavesLike.Win64.Generic.vh
ALYac Gen:Variant.Lazy.601049
Cylance Unsafe
Zillya Clean
Sangfor Trojan.Win32.Save.a
CrowdStrike win/malicious_confidence_100% (W)
Alibaba Trojan:Win64/Kryptik.3e299366
K7GW Trojan ( 005bf9161 )
K7AntiVirus Trojan ( 005bf9161 )
huorong Clean
Baidu Clean
VirIT Clean
Symantec ML.Attribute.HighConfidence
tehtris Clean
ESET-NOD32 a variant of Win64/Kryptik.EUP
APEX Malicious
Paloalto generic.ml
Cynet Malicious (score: 99)
Kaspersky UDS:DangerousObject.Multi.Generic
BitDefender Gen:Variant.Lazy.601049
NANO-Antivirus Clean
ViRobot Clean
MicroWorld-eScan Gen:Variant.Lazy.601049
Tencent Malware.Win32.Gencirc.145e3905
Sophos Mal/Generic-S
F-Secure Trojan.TR/AVI.Agent.bqrtq
DrWeb Clean
VIPRE Gen:Variant.Lazy.601049
TrendMicro Clean
McAfeeD ti!68D0B02B31F5
Trapmine malicious.moderate.ml.score
CTX exe.trojan.genericml
Emsisoft Gen:Variant.Lazy.601049 (B)
Ikarus Trojan.Win64.Crypt
FireEye Generic.mg.bcca205d6c8b5fa2
Jiangmin Clean
Webroot Clean
Varist W64/ABTrojan.EIUQ-0082
Avira TR/AVI.Agent.bqrtq
Fortinet W64/Kryptik.EUP!tr
Antiy-AVL Trojan/Win32.GenericML
Kingsoft malware.kb.a.894
Gridinsoft Trojan.Win64.Packed.sa
Xcitium Clean
Arcabit Trojan.Lazy.D92BD9
SUPERAntiSpyware Clean
ZoneAlarm Clean
Microsoft Trojan:Win32/Wacatac.B!ml
Google Detected
AhnLab-V3 Trojan/Win.Generic.R687895
Acronis Clean
McAfee Artemis!BCCA205D6C8B
TACHYON Clean
VBA32 Clean
Malwarebytes Trojan.MalPack
Panda Clean
Zoner Clean
TrendMicro-HouseCall TROJ_GEN.R002H09CN25
Rising Trojan.Kryptik!8.8 (CLOUD)
Yandex Clean
SentinelOne Clean
MaxSecure Trojan.Malware.8426628.susgen
GData Gen:Variant.Lazy.601049
AVG Win64:MalwareX-gen [Trj]
Avast Win64:MalwareX-gen [Trj]
alibabacloud Trojan:Win/GenericML.xlgf
No IRMA results available.