Static | ZeroBOX

PE Compile Time

2021-03-09 17:20:46

PE Imphash

2b5f348995ab84adca5770eb3a5f6f9f

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x0000d2e3 0x0000d400 5.64771803052
.rdata 0x0000f000 0x00066e5c 0x00067000 4.9758180172
.data 0x00076000 0x00004030 0x00004200 5.36135767092
.reloc 0x0007b000 0x000000b4 0x00000200 2.31405010447

Imports

Library KERNEL32.dll:
0x1000f000 GetCurrentProcessId
0x1000f004 GetCurrentThreadId
0x1000f008 Sleep
Library USER32.dll:
0x1000f010 SendMessageA
0x1000f014 SetTimer
0x1000f018 GetClientRect
0x1000f01c MessageBoxA

Exports

Ordinal Address Name
1 0x100037f1 DllRegisterServer1
!This program cannot be run in DOS mode.
`.rdata
@.data
.reloc
DllRegisterServer1
.text$mn
.idata$5
.rdata
.edata
.rdata$zzzdbg
.idata$2
.idata$3
.idata$4
.idata$6
GetCurrentProcessId
GetCurrentThreadId
KERNEL32.dll
SendMessageA
SetTimer
GetClientRect
MessageBoxA
USER32.dll
9#:/:8:
Nd`^MB
(!"x+>
_<53Gaq
<g"=dC
d)G3Hj
ZBU`NK
gDWiE(Ev
YpXjYBo)
J!7Mo`
y2)=/Yt
#pfl-gm
^Wbn10
u1:DNW
)4R] /G
qar-Fc
m?NZGjJ
A/cGz5
dPch,y
hu6usO
NqV=%y\
9LHdye3
A"3$p`<
(#&2uJ
-K8fx,
h'^E`;f
zBVb|kF
W!lX84S>x
l{JE -
5';+)/
a_zsJ~
b]dk2WW
QkSp&Iu&#
@NVp`5
Xv1-Hp(=NA
&MWQ#Z
PFz8,?6
EQJ-{DY
aq?>2-}
XgV8T(
7 8=^K
J<T9Kz
PPJ4kg
5j|f8v
/CFv=S
lOzbZR
xwCWap
ty#m ;
?'VVJ}
u]wR?Mv
J`pOw`
=02 ok
T"Ey++
qy36`"H
%e!Bu2
]>NU.=j
}CrZ0
~JUv^yv
R;09E:
IOCuL.
uWEW8u
4P.'d$:
\;xo0/
t-woo(-@
y~tG~8*
Pf-s"pAQ
$bGww~F
aH"]Gs
SP)Dy'6
ddJ]M#0B
F@dShJT1)q"
t@k6RT
9#N+Ig
_mF/vd
bBU.z-
NIifhG
rE'VqG
~I *#V
RAg/8*
HH!;()
n;UZ0M
*1?$U4
VDg%jd
x3FKv|
[dvvO@\
S(1D!RA
zpCODM
"d[*E:
J6cI6/
.D=G:J
QJdm0#"
MpZ_PlOP
H,uJXH
BYl5mu
?q$x{4
xKP_8`
:h\@]+
iFS)gT
f@yVI@
WX@g7R
|)Gz:m!C
|EE7vY
*2D765"
aQl9n7CB
-1tUlX,/L!
:n+z\@
uQ@&z5
737+6>}G
+d-\BO
h x9fp
u_<lP?(@
xw\U"v
BX(-HU
<6^+O99
LGG4jZX|
TuiB`
O/^x +
g[c=NF
Eebd8w
*'t%$$
i>^j|d
*|f""
9p})z\
yS4uk)
>YyA2n4"
kK`|DC
.w-Eau
+&::x#\[
hn=O:u,
z+S-A.sC
Ba]w(D
`.}APZ
;Uwg8E\
Uih]E*+
"v'h_|
bfv$#(
-($k9M
CfNN5t'_j
Kl3GxnI
`W"!,"r
~-%b6(
!H{'^ad
*FOj4xh
s:ziD6
%RqS`0
hX3!Q
dG#b8'
@VL#NM;|
xw7kv2
MnrVi0k
~l:<o,
pOK74w
e/BVh4
)=M5'e
jATLgm
6WTW\&
T4n'pOrN
O&:0;(
"E:xnIl
D*!Z>@
Y#ay5mV
E[Gw 'F
?\YKR\
5G%c7(5z ]&
GVkK@,
lgr\(a%
#`Xh/5
xx1Y/$
}Un37.
_d$gO52
Ao1bAr9B#
*gubBt
1NSP'J
XbAS{8
0{.?GM\I
pv]'yD
oE i-c
QNF)(
Gf[=wE
\mH:5F
8-~RI#
n1]g`
B+KG_bm0
s84%2to
*ryEbD
@E7wXH
WcGa-l
4q/^5Cj
Z,e4RVg
BpX?C+x3wY(
YAJpZ6
7z:h]9
:+U].J'
uZ}|zO
@mTt|h
=z}^c'
m=A-B$lR
?Z>;iY
qZ8<%zS
9[x[dt
KkQ+d&
&`R~]:qFR
2Op3n
/IT+w4
Q]J\R=
ofzHi]
\2Dp?/
U\bpw
P;*6#_
(\5QdR
"?ZhW9W
\e.*TL1'i7
:sVh k
&;\`O`
_B[`_K
cP/d!}#
W{{{^j
HekjkJ
G}"X;!
IUm:/m
4!t|Iq
sb?Wbe
g&c&M<
ipEG-f
/,~!Eh
X=3&j~#a6d".
\Y|XGgg
)4Xo5Y
_T4]?rm
V[OMb:
W_ =V
UgMjit
d<I*\A
nIK8\%
cS^8L;L
fj#I>1
\F'#:!
lZoSA
E"jO>V!^C
i{qOY'
\xb(4@
&Wk;5]fq
bjj-FFe
zLLVmX
*rznsNU
br+Mme
u&*L]o?
l5 3,~#}
l&,+C"%Hxve
m\"uAo*
tXKx-0J5
bGu:)!
$cW+ax1
U[]vIb
- 31<(
vuZJ[Ue
oY(/UY
c`-m}aQ;T
-E<hH: ]
K#|U`M!
\dugMuVj
zVsU!louLC
9uqBzWD
tSD<2/G
]2XJ e*
|aBC4E]
-/iRH
b%PFUI
<ThCxa
7FiJLO
Hc1EXc
p:mL>U
McYQ45
xN1l$6v
vTb1Vl
$F ljG
f.Ye]T
y||<ki;K{{
-;}E(NR
;a!35*
G,t#_n
"}9M,;
S:d$KP8
0&`k=a~U
B9!K\@
lpKchv
4y:\q@I_
)V[_cda
}3KP m^
MyrEg9
%&[n}C
05.&l3
Jzjh4c
1Q&P?j
Y34&>D
hu-,-^
bd(kG>
a(OD"}W9
ZrJ|4Kvl
kn-/W"
V|19J*
Oy3o}
gkS.J"
fdOfqwO
L4P6Bqhka
Ep-9:)u$
- +(q
-l}I#h
qo[/F(
~`S7k2
Q0TJe 3
Q~U[Z.dhY
q[+Z+xe,
SFMk@I6/Ck;
wgF5
T~E`1i
HFJ6MnHD
-3]2f1
;,J%W~
8Sezc9
xdHzk^
qd^,SA
&O(d!K
zSgS0?6
$t]wIO
3$(?=m
L6h$2E
Da*";z9
/m0`b,
^O7u1#
\;mg-rD
P?^{4s
($lBD)1gx.L
&. B_g&x?&
D&(3!`
rcK$O[
,JlwCTN
6~<?,s#
?1TsiV
5Quh?e+
h5T.L)T
0d^.x|(
*Cj<{'
%[Ks;'W
gl CZ[
-,_]FR
_"W,W}
09F-;w
e:AIOJI
]<:lD%|A
ugjN%F
t\{~Q$)
r!NDN:
MjJl/Y
:}(et'
O-c!LN
|}(@t
Ho0z**
RNC[P1
=E|MR_
7k%P_t
f*CC>0
'^yf;\
Antivirus Signature
Bkav Clean
Elastic Clean
DrWeb Clean
ClamAV Clean
CMC Clean
CAT-QuickHeal Clean
McAfee Artemis!1DA055B46FB0
Malwarebytes Clean
Zillya Clean
Sangfor Clean
K7AntiVirus Clean
BitDefender Clean
K7GW Clean
CrowdStrike win/malicious_confidence_100% (W)
BitDefenderTheta Clean
Cyren Clean
TotalDefense Clean
APEX Clean
Paloalto generic.ml
Cynet Malicious (score: 90)
Kaspersky Clean
Alibaba Clean
NANO-Antivirus Clean
SUPERAntiSpyware Clean
MicroWorld-eScan Clean
Tencent Clean
Ad-Aware Clean
Emsisoft Clean
Comodo Clean
F-Secure Clean
Baidu Clean
VIPRE Clean
TrendMicro Clean
McAfee-GW-Edition Artemis!Trojan
FireEye Clean
Sophos ML/PE-A
Ikarus Clean
MaxSecure Clean
Avira TR/AD.TrickBot.arvvw
MAX Clean
Antiy-AVL Clean
Kingsoft Clean
Microsoft Clean
Gridinsoft Clean
Arcabit Clean
ViRobot Clean
AhnLab-V3 Clean
ZoneAlarm Clean
GData Win32.Trojan-Spy.TrickBot.98LA7C
ESET-NOD32 Clean
Acronis Clean
VBA32 Clean
ALYac Clean
TACHYON Clean
Cylance Unsafe
Panda Clean
Zoner Clean
TrendMicro-HouseCall Clean
Rising Trojan.Trickpak!8.122C7 (CLOUD)
Yandex Clean
SentinelOne Clean
eGambit Clean
Fortinet Clean
Webroot W32.Trojan.Gen
Avast Clean
Qihoo-360 Clean
No IRMA results available.