Static | ZeroBOX

PE Compile Time

2051-02-27 19:55:01

PE Imphash

f34d5f2d4577ed6d9ceec516c1f5a744

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00002000 0x00003944 0x00003a00 6.46218170719
.rsrc 0x00006000 0x00000624 0x00000800 4.91856922475
.reloc 0x00008000 0x0000000c 0x00000200 0.0815394123432

Resources

Name Offset Size Language Sub-language File type
RT_VERSION 0x000060a0 0x00000398 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_MANIFEST 0x00006438 0x000001ea LANG_NEUTRAL SUBLANG_NEUTRAL XML 1.0 document, UTF-8 Unicode (with BOM) text, with CRLF line terminators

Imports

Library mscoree.dll:
0x402000 _CorExeMain

!This program cannot be run in DOS mode.
`.rsrc
@.reloc
v4.0.30319
#Strings
get_558c020d23bc24d8ca20hTU4M6dn8e4194u00c55e2ec31
set_558c020d23bc24d8ca20hTU4M6dn8e4194u00c55e2ec31
IEnumerable`1
ISecureDataFormat`1
List`1
ToInt32
get_M06Afd56773F2c7dy9F3674E4tjV2feaL9dO572lfob9
mscorlib
System.Collections.Generic
Microsoft.VisualBasic
get_Exception_OptionMustBeProvided
Versioned
Synchronized
Append
CompareMethod
Replace
IsNullOrWhiteSpace
get_Audience
get_ValidAudience
set_ValidAudience
get_AuthenticationMode
set_AuthenticationMode
Enumerable
IDisposable
CallByName
DateTime
CallType
get_AuthenticationType
set_AuthenticationType
System.Core
get_InvariantCulture
get_CurrentCulture
Capture
ApplicationSettingsBase
Dispose
CompilerGeneratedAttribute
GeneratedCodeAttribute
DebuggerNonUserCodeAttribute
DefaultSettingValueAttribute
UserScopedSettingAttribute
UrlIdentityPermissionAttribute
ParamArrayAttribute
get_Value
System.Threading
ToString
get_Length
Microsoft.Owin.Security.OAuth
get_Item
set_Item
System
get_Realm
set_Realm
Boolean
TimeSpan
Microsoft.Owin
Conversion
UseOAuthBearerAuthentication
System.Configuration
System.Globalization
op_Subtraction
MatchCollection
GroupCollection
WebHeaderCollection
IndexOutOfRangeException
ArgumentNullException
ArgumentException
get_Description
set_Description
AuthenticationDescription
CultureInfo
CancellationCallbackInfo
System.Net.Http
System.Linq
get_Provider
set_Provider
IOAuthBearerAuthenticationProvider
IFormatProvider
WsFedCachingSecurityKeyProvider
IIssuerSecurityKeyProvider
StringBuilder
IAppBuilder
HttpMessageHandler
get_TokenHandler
set_TokenHandler
JwtSecurityTokenHandler
get_BackchannelHttpHandler
System.CodeDom.Compiler
RSAPKCS1KeyExchangeDeformatter
ICertificateValidator
get_BackchannelCertificateValidator
IEnumerator
GetEnumerator
.cctor
System.Diagnostics
get_TotalSeconds
Microsoft.VisualBasic.CompilerServices
System.Runtime.CompilerServices
get_ValidAudiences
set_ValidAudiences
Resources
Matches
Microsoft.Owin.Security.ActiveDirectory.Properties
Strings
Equals
Microsoft.IdentityModel.Tokens
OAuthBearerAuthenticationExtensions
System.Text.RegularExpressions
System.Security.Permissions
System.Collections
OAuthBearerAuthenticationOptions
WindowsAzureActiveDirectoryBearerAuthenticationOptions
StringSplitOptions
get_Groups
get_Chars
get_Headers
get_TokenValidationParameters
get_MetadataAddress
set_MetadataAddress
Concat
set_AccessTokenFormat
JwtFormat
Object
System.Net
AuthenticationTicket
get_Tenant
WebClient
get_Current
Convert
System.Deployment.Internal.Isolation.Manifest
get_BackchannelTimeout
System.IdentityModel.Tokens.Jwt
Microsoft.Owin.Security.Jwt
MoveNext
System.Text
get_Now
System.Security.Cryptography
Microsoft.Owin.Security.ActiveDirectory
HashElementEntry
Microsoft.Owin.Security
I/ICI'I
KMicrosoft.VisualStudio.Editors.SettingsDesigner.SettingsSingleFileGenerator
16.6.0.0
_CorExeMain
mscoree.dll
<?xml version="1.0" encoding="UTF-8" standalone="yes"?>
<assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0">
<assemblyIdentity version="1.0.0.0" name="MyApplication.app"/>
<trustInfo xmlns="urn:schemas-microsoft-com:asm.v2">
<security>
<requestedPrivileges xmlns="urn:schemas-microsoft-com:asm.v3">
<requestedExecutionLevel level="asInvoker" uiAccess="false"/>
</requestedPrivileges>
</security>
</trustInfo>
</assembly>PAPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPAD
_I#_I+
558c020d23bc24d8ca20hTU4M6dn8e4194u00c55e2ec31
<meta name="keywords" content="([\w\d ]*)">
http://ldvamlwhdpetnyn.ml/liverpool-fc-news/features/steven-gerrard-liverpool-future-dalglish--goal-4C040980FB238F42747D4200E39E5134.html
http://ldvamlwhdpetnyn.ml/liverpool-fc-news/features/steven-gerrard-liverpool-future-dalglish--goal-E6414DF053ECE16DD340D40A0368921A.html
UserAgent: Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.106 Safari/537.36 OPR/38.0.2220.41
DownloadString
OWKSvYDFAs
EntryPo
VS_VERSION_INFO
StringFileInfo
040904e4
Comments
CompanyName
FileDescription
FileVersion
7.829.171.209
LegalCopyright
All Rights Reserved
InternalName
LegalTrademarks
OriginalFilename
ProductName
ProductVersion
7.829.171.209
Assembly Version
7.829.171.209
VarFileInfo
Translation
Antivirus Signature
Bkav Clean
Elastic Clean
MicroWorld-eScan Trojan.GenericKD.36801069
FireEye Trojan.GenericKD.36801069
CAT-QuickHeal Clean
ALYac Clean
Cylance Unsafe
VIPRE Clean
Sangfor Trojan.Win32.Save.a
CrowdStrike win/malicious_confidence_100% (W)
BitDefender Trojan.GenericKD.36801069
K7GW Trojan-Downloader ( 0057b8a01 )
K7AntiVirus Clean
Baidu Clean
Cyren W32/MSIL_Kryptik.EBP.gen!Eldorado
Symantec ML.Attribute.HighConfidence
ESET-NOD32 a variant of MSIL/TrojanDownloader.Agent.HVE
APEX Malicious
Avast FileRepMalware
ClamAV Clean
Kaspersky HEUR:Trojan-PSW.MSIL.Agensla.gen
Alibaba Trojan:MSIL/Generic.516f301d
NANO-Antivirus Clean
ViRobot Clean
AegisLab Trojan.MSIL.Agensla.i!c
Rising Downloader.Agent!8.B23 (CLOUD)
Ad-Aware Trojan.GenericKD.36801069
Emsisoft Trojan.GenericKD.46191255 (B)
Comodo Clean
F-Secure Clean
DrWeb Trojan.InjectNET.29
Zillya Clean
TrendMicro Clean
McAfee-GW-Edition Artemis!Trojan
MaxSecure Clean
CMC Clean
Sophos Clean
Ikarus Win32.Outbreak
GData Win32.Trojan.Agent.W6GJFB
Jiangmin Clean
Webroot W32.Trojan.Gen
Avira Clean
MAX Clean
Antiy-AVL Clean
Kingsoft Win32.PSWTroj.Undef.(kcloud)
Gridinsoft Clean
Arcabit Clean
SUPERAntiSpyware Clean
ZoneAlarm Clean
Microsoft Trojan:MSIL/Agensla.GE!MTB
Cynet Clean
AhnLab-V3 Clean
Acronis Clean
McAfee Artemis!342D651660CF
TACHYON Clean
VBA32 Clean
Malwarebytes Trojan.Downloader.MSIL
Panda Clean
Zoner Clean
TrendMicro-HouseCall TROJ_GEN.R002H0DDR21
Tencent Clean
Yandex Clean
SentinelOne Static AI - Malicious PE
eGambit Clean
Fortinet MSIL/Agent.HVE!tr.dldr
BitDefenderTheta Gen:NN.ZemsilCO.34684.bm0@a8uD5Odi
AVG FileRepMalware
Cybereason Clean
Paloalto Clean
Qihoo-360 Clean
No IRMA results available.