Static | ZeroBOX

PE Compile Time

2021-04-01 23:07:59

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00002000 0x00012778 0x00012800 6.88443250799
.rsrc 0x00016000 0x000005d6 0x00000600 4.21058882443

Resources

Name Offset Size Language Sub-language File type
RT_VERSION 0x000160a0 0x0000034c LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_MANIFEST 0x000163ec 0x000001ea LANG_NEUTRAL SUBLANG_NEUTRAL XML 1.0 document, UTF-8 Unicode (with BOM) text, with CRLF line terminators

!This program cannot be run in DOS mode.
`.rsrc
HX7&d#6
1jPD ]
yQ;Kko#%
tj5`wc
S$O/z0
b#:[WS
9fPU}g5
9l@,{WtX)
|:9x(0i]
Ep|T3W>k>;
$S`Kn@
(pqn,h]
]yfzl
`f9j7U
Z)kUwC
4O/{r!
'_G(#
b! tXh
{^]POL>
S(VZq[
Y\FXiD
Dz*iyJ5Rv&
S2EIWs
C+ad(<
a$SIdn
6SDIKK
9TmE3i
2fKD} 0U
+WMxW^/
@^R>5,
qeF`2M
OD[9?kjy`
X_iI<
e_||Vu
P&HyDK
/N=wyU
GALaZ6
^FpV>5
n<dRt#x
pSCX4-
"d+:`IUh~
r<=pS=
\1|[}HG
8~E6NfAb
s5z(^M
|"~Z $z
Z?_b`
')Z {X
\+P}Za8A
s@Z t
"mZ Y;
GPZ #|U
yZ V{7
nZ s3!Fa8
Od1jZ t
BNZ l1
CZ &!]ka8
3g0hZ +
J1zZ =;
JV\gZ Oq.|a8
*PZa8A
'fcZ W
_bj2
O% %&+
Z |FVa+
_bY*
Z )vM
]2 %&+
\T\a8@
X[Z \k6
%UZN%+
%Z O!=
H%Gi%+
Z K<^:a8
Zs\98e
9I r#\3a%
D>)@Z
UNS%&8
%Z nzY
Z so:qa8
Q~FxZ
Z_bX
`XF%&
0o"K8Q
Y_cX*
+* (8$
AL=8Z G?
Vh9a8u
v4.0.30319
#Strings
#Strings
#Schema
UInt32
UInt64
get_UTF8
<Module>
System.IO
mscorlib
Microsoft.VisualBasic
get_CurrentThread
get_IsAttached
set_IsBackground
GetMethod
CreateInstance
GetHashCode
WKdFYiyXWUJdmWQuILPTABNbfhfe
Invoke
RuntimeFieldHandle
RuntimeTypeHandle
GetTypeFromHandle
get_Name
get_FullName
ValueType
GetElementType
MethodBase
ApplicationBase
EditorBrowsableState
SetApartmentState
ThreadStaticAttribute
STAThreadAttribute
CompilerGeneratedAttribute
HelpKeywordAttribute
GeneratedCodeAttribute
EditorBrowsableAttribute
ComVisibleAttribute
AssemblyTitleAttribute
StandardModuleAttribute
HideModuleNameAttribute
AssemblyTrademarkAttribute
SuppressIldasmAttribute
DebuggerHiddenAttribute
AssemblyFileVersionAttribute
MyGroupCollectionAttribute
AssemblyDescriptionAttribute
CompilationRelaxationsAttribute
AssemblyProductAttribute
AssemblyCopyrightAttribute
AssemblyCompanyAttribute
RuntimeCompatibilityAttribute
ReadByte
GetObjectValue
get_IsAlive
add_AssemblyResolve
SrFNhCl.exe
System.Threading
NewLateBinding
Encoding
IsLogging
ToString
GetString
ToLong
get_Length
SrFNhCl
System.ComponentModel
MemoryStream
System
Random
System.ComponentModel.Design
AppDomain
get_CurrentDomain
System.Reflection
Intern
MethodInfo
DriveInfo
ParameterInfo
ComputerInfo
Buffer
ResourceManager
ToInteger
Debugger
ResolveEventHandler
System.CodeDom.Compiler
Computer
Activator
.cctor
System.Diagnostics
Microsoft.VisualBasic.Devices
Microsoft.VisualBasic.ApplicationServices
System.Runtime.InteropServices
Microsoft.VisualBasic.CompilerServices
System.Runtime.CompilerServices
System.Resources
miclV4sp3QVxd.resources
ResolveEventArgs
Equals
Conversions
RuntimeHelpers
GetParameters
Operators
DivideObject
GetObject
LateGet
Environment
get_EntryPoint
get_ProcessorCount
ParameterizedThreadStart
FailFast
System.Text
InitializeArray
GetCallingAssembly
GetExecutingAssembly
BlockCopy
get_TotalPhysicalMemory
op_Equality
Muavi 2021
Muavi Music Player
Muavi Music Player V2
1.2.3.4
WrapNonExceptionThrows
MyTemplate
14.0.0.0
My.Computer
My.Application
My.User
My.WebServices
4System.Web.Services.Protocols.SoapHttpClientProtocol
Create__Instance__
Dispose__Instance__
<?xml version="1.0" encoding="UTF-8" standalone="yes"?>
<assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0">
<assemblyIdentity version="1.0.0.0" name="MyApplication.app"/>
<trustInfo xmlns="urn:schemas-microsoft-com:asm.v2">
<security>
<requestedPrivileges xmlns="urn:schemas-microsoft-com:asm.v3">
<requestedExecutionLevel level="asInvoker" uiAccess="false"/>
</requestedPrivileges>
</security>
</trustInfo>
</assembly>
VS_VERSION_INFO
VarFileInfo
Translation
StringFileInfo
000004b0
Comments
Muavi Music Player
CompanyName
FileDescription
FileVersion
1.2.3.4
InternalName
SrFNhCl.exe
LegalCopyright
LegalTrademarks
Muavi 2021
OriginalFilename
SrFNhCl.exe
ProductName
Muavi Music Player V2
ProductVersion
1.2.3.4
Assembly Version
1.2.3.4
Antivirus Signature
Bkav Clean
Elastic malicious (high confidence)
MicroWorld-eScan Trojan.GenericKD.36624462
FireEye Generic.mg.4e62febb0ac594a5
CAT-QuickHeal Clean
McAfee Artemis!4E62FEBB0AC5
Cylance Unsafe
VIPRE Trojan.Win32.Generic!BT
Sangfor Trojan.Win32.Save.a
K7AntiVirus Clean
BitDefender Trojan.GenericKD.36624462
K7GW Trojan ( 005766a11 )
Cybereason malicious.910ab5
BitDefenderTheta Clean
Cyren W64/Dothetuk.B.gen!Eldorado
Symantec Trojan.Gen.MBT
ESET-NOD32 a variant of MSIL/Kryptik.ZHS
Baidu Clean
APEX Malicious
Avast Win64:Trojan-gen
ClamAV Clean
Kaspersky Clean
Alibaba Trojan:MSIL/Kryptik.a91eb66f
NANO-Antivirus Clean
ViRobot Clean
AegisLab Trojan.Win32.Generic.4!c
Tencent Clean
Ad-Aware Trojan.GenericKD.36624462
Sophos Mal/Generic-S
Comodo Clean
F-Secure Clean
DrWeb Clean
Zillya Clean
TrendMicro Clean
McAfee-GW-Edition Artemis!Trojan
CMC Clean
Emsisoft Trojan.GenericKD.36624462 (B)
SentinelOne Clean
GData Trojan.GenericKD.36624462
Jiangmin Clean
eGambit Unsafe.AI_Score_99%
Avira TR/Kryptik.dbljc
MAX malware (ai score=90)
Antiy-AVL Clean
Kingsoft Clean
Gridinsoft Clean
Arcabit Trojan.Generic.D22ED84E
SUPERAntiSpyware Clean
ZoneAlarm Clean
Microsoft Trojan:Win32/Wacatac.B!ml
Cynet Malicious (score: 85)
AhnLab-V3 Clean
Acronis Clean
VBA32 Clean
ALYac Trojan.GenericKD.36624462
TACHYON Clean
Malwarebytes Clean
Panda Clean
Zoner Clean
TrendMicro-HouseCall Clean
Rising Clean
Yandex Clean
Ikarus Trojan.MSIL.Crypt
MaxSecure Clean
Fortinet PossibleThreat.PALLASNET.H
Webroot W32.Malware.Gen
AVG Win64:Trojan-gen
Paloalto Clean
CrowdStrike win/malicious_confidence_70% (W)
Qihoo-360 Win64/Heur.Generic.H8kATgYA
No IRMA results available.