Static | ZeroBOX

PE Compile Time

2105-06-17 13:00:43

PE Imphash

f34d5f2d4577ed6d9ceec516c1f5a744

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00002000 0x000e89dc 0x000e8a00 6.92740806415
.rsrc 0x000ec000 0x000005a4 0x00000600 4.05994812666
.reloc 0x000ee000 0x0000000c 0x00000200 0.101910425663

Resources

Name Offset Size Language Sub-language File type
RT_VERSION 0x000ec090 0x00000314 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_MANIFEST 0x000ec3b4 0x000001ea LANG_NEUTRAL SUBLANG_NEUTRAL XML 1.0 document, UTF-8 Unicode (with BOM) text, with CRLF line terminators

Imports

Library mscoree.dll:
0x402000 _CorExeMain

!This program cannot be run in DOS mode.
`.rsrc
@.reloc
$5s;
2s>
%%%(n
%%%(n
@[#es-8R
9"s;
%%%(n
59s;
@@s>
v4.0.30319
#Strings
_Closure$__21-0
_Closure$__23-0
_Closure$__25-0
_Closure$__19-0
_Lambda$__0
get_ParamArray0
039058C6F2C0CB492C533B0A4D14EF77CC0F78ABCCCED5287D84A1A2011CFB81
ThreadSafeObjectProvider`1
List`1
get_TabPage1
set_TabPage1
get_Custom_Panel1
set_Custom_Panel1
get_CustomTabControl1
set_CustomTabControl1
m_Form1
get_Form1
set_Form1
get_Custom_Button1
set_Custom_Button1
get_Timer1
set_Timer1
__StaticArrayInitTypeSize=12
UInt32
ToInt32
MouseOVC2
Dictionary`2
get_TabPage2
set_TabPage2
get_Panel2
set_Panel2
m_Form2
get_Form2
set_Form2
get_Button2
set_Button2
__StaticArrayInitTypeSize=3
m_Form3
get_Form3
set_Form3
get_Button3
set_Button3
__StaticArrayInitTypeSize=24
A68DE4B5E96A60C8CEB3C7B7EF93461725BDBBFF3516B136585A743B5C0EC664
UInt64
m_Form4
get_Form4
set_Form4
UInt16
get_UTF8
<Module>
<PrivateImplementationDetails>
get_CollectionA
set_CollectionA
B________________________B
Color_B
RoundedB
get_CollectionB
set_CollectionB
ColorB
MouseOVC
$VB$Local_Slide_C
Shake_C
get_CollectionC
set_CollectionC
RadiusC
System.Drawing.Drawing2D
4636993D3E1DA4E9D6B8F87B79E8F7C6D018580D52661950EABC3845C5897A4D
get_CollectionD
set_CollectionD
get_CollectionE
set_CollectionE
RectangleF
PointF
MouseOVCL
get_MouseLeaveCL
set_MouseLeaveCL
sGithubRepositoryURL
System.IO
MOUSEOHVLHANDLER
MOUSEOHVHANDLER
S____________________________S
Fade_In_S
Fade_Out_S
m_ABOUT
get_ABOUT
set_ABOUT
Radius_AZ
Dispose__Instance__
Create__Instance__
value__
MOUSEOHVLHANDLERContainer_
MOUSEOHVHANDLERContainer_
get_Container_
set_Container_
ProjectData
CollectArrayData
FromArgb
DialogsLib
mscorlib
get_labelGitHub
set_labelGitHub
Catonic
System.Collections.Generic
Microsoft.VisualBasic
Thread
Form1_Load
Form2_Load
Form3_Load
ABOUT_Load
add_Load
MainForm_Load
get_lbAdd
set_lbAdd
get_Red
add_SelectedIndexChanged
remove_SelectedIndexChanged
cbDrives_SelectedIndexChanged
set_FormattingEnabled
set_DoubleBuffered
get_IsDisposed
Me_Pressed
m_FormBeingCreated
Synchronized
get_Hand
Replace
CreateInstance
get_GetInstance
defaultInstance
instance
get_Reference
set_Reference
SharedCode
GetHashCode
set_AutoScaleMode
FileMode
set_SizeMode
TabSizeMode
PictureBoxSizeMode
set_SmoothingMode
fnPolyFillMode
TabPage
FromImage
DrawImage
get_Message
set_Message
SendMessage
bMerge
get_Draggable
set_Draggable
IEnumerable
IDisposable
Hashtable
Double
get_Handle
RuntimeFieldHandle
RuntimeTypeHandle
CreateHandle
GetTypeFromHandle
FillRectangle
get_ClientRectangle
DrawRectangle
Single
driveIniFile
m_pIniFile
Console
Example
set_Title
sDialogTitle
get_labelTitle
set_labelTitle
get_panelTitle
set_panelTitle
set_DropDownStyle
set_BorderStyle
set_FormBorderStyle
ButtonBorderStyle
SetStyle
FontStyle
ComboBoxStyle
get_Name
set_Name
get_FileName
sFileName
GetName
SetName
get_AssemblyName
filename
DateTime
Shake_Anime
$VB$Local_time
ReadLine
WriteLine
get_NewLine
set_Multiline
get_CurrentTimeZone
get_labelIcone
set_labelIcone
GetCType
get_Type
set_Type
ValueType
GetType
get_PropertyType
datatype
get_Culture
set_Culture
resourceCulture
ReleaseCapture
ConsoleApplicationBase
ButtonBase
ApplicationSettingsBase
get_InvariantCultureIgnoreCase
Dispose
nWidthEllipse
nHeightEllipse
DebuggerBrowsableState
EditorBrowsableState
TriState
get_lbDelete
set_lbDelete
get_White
CAttribute
ThreadStaticAttribute
STAThreadAttribute
CompilerGeneratedAttribute
DesignerGeneratedAttribute
GuidAttribute
HelpKeywordAttribute
GeneratedCodeAttribute
DebuggerNonUserCodeAttribute
DebuggableAttribute
DebuggerBrowsableAttribute
EditorBrowsableAttribute
ComVisibleAttribute
AssemblyTitleAttribute
StandardModuleAttribute
HideModuleNameAttribute
DebuggerStepThroughAttribute
AssemblyTrademarkAttribute
TargetFrameworkAttribute
DebuggerHiddenAttribute
AssemblyFileVersionAttribute
MyGroupCollectionAttribute
AssemblyDescriptionAttribute
CompilationRelaxationsAttribute
AssemblyProductAttribute
AssemblyCopyrightAttribute
get_ArrayAttribute
AssemblyCompanyAttribute
RuntimeCompatibilityAttribute
AccessedThroughPropertyAttribute
get_DeepSkyBlue
CValue
get_Value
set_Value
m_ThreadStaticValue
m_sValue
WithEventsValue
GetObjectValue
GetValue
SetValue
GetKeyValue
SetKeyValue
AutoPropertyValue
add_MouseLeave
remove_MouseLeave
Remove
EnumHelp.exe
set_Size
lFileSize
get_TotalSize
set_ItemSize
set_AutoSize
set_ClientSize
ISupportInitialize
get_GenericSansSerif
get_labelImg
set_labelImg
System.Threading
set_Padding
NewLateBinding
Encoding
System.Runtime.Versioning
GetResourceString
CompareString
ToString
DrawString
Substring
disposing
System.Drawing
OpenFileDialog
getFileFromDialog
CommonDialog
ShowDialog
get_cbRefresh
set_cbRefresh
SolidBrush
LinearGradientBrush
sFilePath
sDrivePath
get_Width
set_Width
get_Length
get_health
set_health
playerhealth
SL_ANim_Hori
Slide_Anim_Hori
get_Black
get_HotTrack
Timer1_Tick
add_Tick
remove_Tick
Custom_Button1_Click
Button2_Click
Button3_Click
labelGitHub_Click
lbAdd_Click
add_Click
lbDelete_Click
remove_Click
cbRefresh_Click
cbClear_Click
cbExit_Click
cbAbout_Click
cbApply_Click
Decimal
get_lbLabel
set_lbLabel
get_tbLabel
set_tbLabel
get_VolumeLabel
System.ComponentModel
Custom_Panel
Gdi32.dll
gdi32.dll
user32.dll
get_Bool
set_Bool
$VB$Local_Fade_I_Control
$VB$Local_Fade_O_Control
CustomTabControl
ContainerControl
ListControl
FileStream
get_EndOfStream
lParam
wParam
Program
get_Item
set_Item
get_SelectedItem
System
SL_ANim
get_ColorBottom
set_ColorBottom
m_Custom_Form
get_Custom_Form
set_Custom_Form
FindForm
m_MainForm
get_MainForm
set_MainForm
get_HexagonForm
set_HexagonForm
Fade_In
resourceMan
Boolean
TimeSpan
CreatePolygonRgn
CreateRoundRectRgn
set_TextAlign
System.ComponentModel.Design
FromHrgn
get_tooltipMain
set_tooltipMain
set_Icon
get_pbIcon
set_pbIcon
set_ShowIcon
MessageBoxIcon
DrawPolygon
set_Region
get_Version
get_Application
MyApplication
get_Location
set_Location
get_ImageLocation
set_ImageLocation
System.Configuration
System.Globalization
AddSection
RenameSection
RemoveSection
IniSection
m_sSection
GetSection
sNewSection
System.Reflection
ICollection
TabPageCollection
ImageCollection
ControlCollection
GroupCollection
ObjectCollection
collection
m_section
set_StartPosition
FormStartPosition
TargetInvocationException
InvalidOperationException
get_InnerException
ArgumentException
Custom_Button
get_Button
get_TextBtn
set_TextBtn
add_MouseDown
remove_MouseDown
Container_MouseDown
OnMouseDown
$VB$Local_WidthToGo
$VB$Local_heightToGo
get_Info
CultureInfo
DriveInfo
get_labelExeInfo
set_labelExeInfo
MemberInfo
AssemblyInfo
PropertyInfo
add_MouseUp
Bitmap
get_MouseOverSleep
set_MouseOverSleep
SetToolTip
get_Help
EnumHelp
retrieveLinkerTimestamp
get_ColorTop
set_ColorTop
set_TabStop
get_Tup
set_ShowInTaskbar
get_cbClear
set_cbClear
Linear
DirectorySeparatorChar
Slide_Anim_Ver
InvokeMember
FormatNumber
get_FloatNumber
set_FloatNumber
get_IntNumber
set_IntNumber
get_Header
StreamReader
IFormatProvider
m_AppObjectProvider
m_UserObjectProvider
m_ComputerObjectProvider
m_MyWebServicesObjectProvider
m_MyFormsObjectProvider
sender
Binder
get_Encoder
set_Encoder
get_RoundedBorder
set_RoundedBorder
get_RadiusRoundedBorder
set_RadiusRoundedBorder
get_ActiveBorder
get_ColorBorder
set_ColorBorder
DrawBorder
get_ResourceManager
ComponentResourceManager
MouseEventHandler
System.CodeDom.Compiler
IContainer
StringComparer
IEqualityComparer
TextRenderer
get_User
StreamWriter
TextWriter
set_Filter
BitConverter
get_Computer
MyComputer
get_MouseOver
set_MouseOver
add_MouseHover
remove_MouseHover
Serializer
set_ForeColor
set_BackColor
set_UseVisualStyleBackColor
get_FontColor
set_FontColor
ClearProjectError
SetProjectError
set_Cursor
get_lbSeparator
set_lbSeparator
IEnumerator
GetEnumerator
Activator
.cctor
get_Graphics
System.Diagnostics
AddSeconds
Microsoft.VisualBasic.Devices
get_WebServices
MyWebServices
Microsoft.VisualBasic.ApplicationServices
System.Runtime.InteropServices
Microsoft.VisualBasic.CompilerServices
System.Runtime.CompilerServices
System.Resources
Catonic.My.Resources
Catonic.Form1.resources
Catonic.Form2.resources
Catonic.Form3.resources
Catonic.Form4.resources
Catonic.ABOUT.resources
Catonic.Custom_Form.resources
Catonic.MainForm.resources
Catonic.Resources.resources
DebuggingModes
get_TabPages
get_Images
Brushes
CollectProperties
GetProperties
Doubles
ControlStyles
CTypes
FileAttributes
SetAttributes
get_Values
get_cbDrives
set_cbDrives
get_lbDrives
set_lbDrives
dicDrives
GetDrives
getDrives
BindingFlags
TextFormatFlags
Strings
get_Settings
MySettings
MouseEventArgs
PaintEventArgs
ReferenceEquals
get_Controls
get_Items
System.Windows.Forms
get_Forms
MyForms
Booleans
Contains
set_AutoScaleDimensions
Conversions
System.Text.RegularExpressions
get_Sections
RemoveAllSections
System.Collections
m_sections
RegexOptions
MouseButtons
MessageBoxButtons
get_Groups
ColoredBorders
get_PaintedBorders
set_PaintedBorders
get_ColorBorders
set_ColorBorders
Integers
RuntimeHelpers
sExtensionFilters
SystemColors
Cursors
Operators
get_Hours
AddHours
IniFileClass
DriveClass
FileAccess
get_Success
Process
Compress
Decompress
components
cPoints
Exists
get_Keys
RemoveAllKeys
m_keys
Concat
get_DriveFormat
StringFormat
GetTabRect
nBottomRect
nTopRect
nLeftRect
nRightRect
GetObject
MyProject
LateGet
get_BlueViolet
GetUtcOffset
get_Left
set_Left
get_ColorLeft
set_ColorLeft
get_ColorRight
set_ColorRight
get_Height
set_Height
op_Implicit
EndInit
BeginInit
getFileSizeUnit
GraphicsUnit
get_cbExit
set_cbExit
get_Default
DialogResult
set_Alignment
TabAlignment
set_LineAlignment
StringAlignment
ContentAlignment
Environment
InitializeComponent
get_Transparent
get_Current
ControlPaint
OnPaint
get_Font
set_Font
get_Count
get_TabCount
ThreadStart
Convert
Import
Export
get_ImageList
set_TopMost
Fade_Out
get_MouseOut
set_MouseOut
get_cbAbout
set_cbAbout
SuspendLayout
ResumeLayout
PerformLayout
MoveNext
System.Text
get_Text
set_Text
ReadAllText
get_FormText
set_FormText
DrawText
IDeviceContext
get_Arrow
set_TabIndex
get_SelectedIndex
set_SelectedIndex
get_ImageIndex
set_FilterIndex
MessageBox
PictureBox
set_MinimizeBox
set_MaximizeBox
ComboBox
TextBox
Catonic.My
get_DarkGray
InitializeArray
ToArray
get_IsArray
get_IsReady
AddKey
RenameKey
RemoveKey
IniKey
m_sKey
ContainsKey
GetKey
sNewKey
get_Assembly
FontFamily
get_cbApply
set_cbApply
set_RestoreDirectory
bRestoreDirectory
set_Opacity
IsNullOrEmpty
MySettingsProperty
WrapNonExceptionThrows
Catonic
Copyright
2019
$98ec3763-f600-4d08-98fe-2dfb0ba9139c
1.0.0.0
.NETFramework,Version=v4.0
FrameworkDisplayName
.NET Framework 4
labelImg
labelTitle
panelTitle
labelIcone
labelExeInfo
labelGitHub
Container_
Button2
Button3
Panel2
Timer1
CustomTabControl1
TabPage1
TabPage2
Custom_Panel1
Custom_Button1
cbAbout
tooltipMain
lbSeparator
cbApply
cbDrives
cbRefresh
tbLabel
pbIcon
lbLabel
lbDelete
cbClear
cbExit
lbDrives
MyTemplate
11.0.0.0
3System.Resources.Tools.StronglyTypedResourceBuilder
16.0.0.0
KMicrosoft.VisualStudio.Editors.SettingsDesigner.SettingsSingleFileGenerator
16.7.0.0
System.Windows.Forms.Form
Create__Instance__
Dispose__Instance__
My.MyProject.Forms
4System.Web.Services.Protocols.SoapHttpClientProtocol
Create__Instance__
Dispose__Instance__
My.Computer
My.Application
My.User
My.Forms
My.WebServices
My.Settings
lSystem.Resources.ResourceReader, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089#System.Resources.RuntimeResourceSet
PADPADP
lSystem.Resources.ResourceReader, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089#System.Resources.RuntimeResourceSet
PADPADP
lSystem.Resources.ResourceReader, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089#System.Resources.RuntimeResourceSet
PADPADP
lSystem.Resources.ResourceReader, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089#System.Resources.RuntimeResourceSet
PADPADP
lSystem.Resources.ResourceReader, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089#System.Resources.RuntimeResourceSet
PADPADP
lSystem.Resources.ResourceReader, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089#System.Resources.RuntimeResourceSet
PADPADP
lSystem.Resources.ResourceReader, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089#System.Resources.RuntimeResourceSet
fSystem.Drawing.Icon, System.Drawing, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3aBj
QSystem.Drawing, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a
System.Drawing.Icon
IconData
IconSize
System.Drawing.Size
System.Drawing.Size
height
0^IDATx
AS$;]pt8
zt;m:+-:
,+D"MH
QDXn,r
(y<;`Y0N&
RbJ2\]
!"U%V5f
z4O=<P
*("U#V5
"BU!V5b5E%
KDEMYqX
L'd:%/<
QP#VU"U+js+
6YScoR
A`::Xx
j`mySn#
3/)"3/).3/):3/)F3/)S3/)^3/)i3/)t3/)|3/)
3/)|3/)s3/)i3/)^3/)S3/)G3/);3/).3/)"3/)
3/)-3/)C3/)\3/)t3/)
3/)v3/)]3/)D3/).3/)
3/)$3/)A3/)b3/)
3/)c3/)B3/)%3/)
3/)(3/)O3/)y3/)
3/){3/)O3/))3/)
3/)43/)e3/)
3/)f3/)53/)
3/)$3/)X3/)
3/)Y3/)$3/)
3/)(3/)g3/)
3/)i3/)(3/)
3/)W3/)
3/)X3/)
3/)%3/){3/)
3/)|3/)&4.(
3/)#3/)
3/)$3/)
3/)k3/)
3/)l3/)
3/))3/)
3/)*3/)
3/)<3/)
3/)=3/)
3/)23/)
3/)23/)
3/)R3/)
3/)R3/)
3/)o3/)
3/)o3/)
3/)'3/)
3/)'3/)
3/)h3/)
3/)i30(
3/)m3/)
3/)m3/)
3/)?3/)
3/)?0.(
3/)k3/)
3/)k3/)
3/)p3/)
3/)q3/)
3/)W3/)
3/)X3/)
3/).3/)u3/)
3/)v3/)03/)
3/)23/)o3/)
3/)p3/)33/)
,-$S7=k
f<Im(,"3/)
Ms;zBV
3/) 3/)
3/) 3/)
3/)+3/)
3/),3/)
3/)83/)
3/)93/)
3/)F3/)
3/)G3/)
3/)V3/)
3/)W3/)
3/)f3/)
3/)g3/)
3/)w3/)
3/)x3/)
3/)3/)
3/)3/)
3/)*3/)
3/)+3/)
3/)73/)
3/)83/)
3/)E3/)
3/)F3/)
3/)U3/)
3/)U3/)
3/)e3/)
3/)f3/)
3/)v3/)
3/)w3/)
3/)3/)
3/))3/)
3/)*3/)
3/)63/)
3/)63/)
3/)D3/)
3/)E3/)
3/)S3/)
3/)T3/)
3/)c3/)
3/)d3/)
3/)t3/)
3/)u3/)
3/)(3/)
3/))3/)
3/)53/)
3/)53/)
3/)C3/)
3/)C3/)
3/)R3/)
3/)S3/)
3/)b3/)
3/)c3/)
3/)s3/)
3/)t3/)
3/)'3/)
3/)(3/)
3/)33/)
3/)33/)
3/)33/)
3/)33/)
3/)13/)
3/)13/)
3/)V3/)
3/)V3/)
3/)X3/)
3/)Y2/)
3/),3/)
3/)-3/)
3/)=3/)
3/)>3/)
3/)&3/)l3/)
3/)l3/)'3/)
3/)+3/)b3/)
3/)c3/)+3/)
3/)63/)b3/)
3/)d3/)73/)
3/):3/)[3/)
3/)]3/);3/)
3/)*3/)?3/)V3/)m3/)
3/)o3/)W3/)@3/)*3/)
3/)!3/)*3/)33/)<3/)E3/)M3/)T3/)Z3/)_3/)c3/)g3/)i3/)j3/)j3/)i3/)g3/)c3/)_3/)Z3/)T3/)M3/)E3/)<3/)33/)*3/)!3/)
3/)#3/).3/):3/)E3/)P3/)Z3/)b3/)j3/)o3/)t3/)w3/)y3/)y3/)w3/)t3/)o3/)j3/)b3/)Z3/)P3/)E3/):3/)/3/)#3/)
3/)#3/):3/)T3/)p3/)
3/)p3/)U3/);3/)#3/)
3/)<3/)b3/)
3/)c3/)=3/)
3/))3/)W3/)
3/)X3/)*3/)
3/)F3/)
3/)G3/)
3/)E3/)
3/)F3/)
3/)m3/)
3/)m3/)
3/)t3/)
3/)u3/)
3/)I3/)
3/)J3.*
3/)p3/)
3/)p3/)
3/)i3/)
3/)i4/*
3/))3/)
3/))3/)
3/)f3/)
3/)g3/)
3/)q3/)
3/)q3/)
3/)>3/)
3/)>3/)
3/)B3/)
3/)B3/)
3/)N3/)
3/)N3/)
3/)63/)
3/)73/)
3/)D3/)
3/)E3/)
L69;,-$
:1.'60+
3/)'3/)
3/)33/)
3/)33/)
3/)A3/)
3/)A3/)
3/)P3/)
3/)P3/)
3/)`3/)
3/)a3/)
3/)q3/)
3/)r3/)
3/)&3/)
3/)&3/)
3/)23/)
3/)23/)
3/)@3/)
3/)@3/)
3/)O3/)
3/)O3/)
3/)_3/)
3/)_3/)
3/)p3/)
3/)p3/)
3/)%3/)
3/)%3/)
3/)13/)
3/)13/)
3/)>3/)
3/)?3/)
3/)M3/)
3/)N3/)
3/)]3/)
3/)^3/)
3/)n3/)
3/)o3/)
3/)$3/)
3/)$3/)
3/)03/)
3/)03/)
3/)=3/)
3/)>3/)
3/)L3/)
3/)M3/)
3/)[3/)
3/)\3/)
3/)^3/)
3/)^3/)
3/)O3/)
3/)O3/)
3/)3/)
3/)3/)
3/)W3/)
3/)W3/)
3/)F3/)
3/)G3/)
3/)H3/)
3/)H3/)
3/) 3/)C3/)m3/)
3/)n3/)D3/) 3/)
3/),3/)D3/)^3/)y3/)
3/)y3/)_3/)E3/),3/)
3/)3/)(3/)13/)93/)@3/)G3/)L3/)P3/)S3/)T3/)T3/)S3/)P3/)L3/)G3/)@3/)93/)13/)(3/)3/)
3/)#3/).3/)83/)A3/)I3/)O3/)S3/)U3/)U3/)S3/)O3/)I3/)A3/)83/).3/)#3/)
3/)(3/)D3/)d3/)
3/)d3/)E3/)(3/)
3/) 3/)I3/)z3/)
3/){3/)J3/) 3/)
3/)13/)q3/)
3/)q3/)23/)
3/)^3/)
3/)_3/)
3/)`3/)
3/)`3/)
3/)@3/)
3/)@3/)
3/)I3/)
3/)I3/)
3/)/3/)
3/)/3/)
3/)03/)
3/)03/)
3/)W3/)
3/)W3/)
o?O[`;E
=2/[=2/
2/(k1/(
2/)k2/)
3/)|3/)
3/)|3/)
3/)"3/)
3/)"3/)
3/)-3/)
3/)-3/)
3/):3/)
3/);3/)
3/)I3/)
3/)I3/)
3/)Y3/)
3/)Y3/)
3/)i3/)
3/)j3/)
3/)z3/)
3/){3/)
3/)!3/)
3/)!3/)
3/),3/)
3/),3/)
3/)93/)
3/):3/)
3/)H3/)
3/)H3/)
3/)W3/)
3/)X3/)
3/)h3/)
3/)h3/)
3/)y3/)
3/)y3/)
3/)S3/)
3/)T3/)
3/)^3/)
3/)^3/)
3/)m3/)
3/)m3/)
3/)03/)f3/)
3/)f3/)13/)
3/)%3/)B3/)a3/)
3/)b3/)B3/)%3/)
3/)&3/).3/)53/):3/)=3/)?3/)?3/)=3/):3/)53/).3/)&3/)
3/)13/)H3/)^3/)s3/)
3/)t3/)_3/)H3/)13/)
3/)C3/)q3/)
3/)r3/)C3/)
3/)#3/)d3/)
3/)d3/)#3/)
3/)03/)
3/)03/)
3/)m3/)
3/)m3/)
3/)`3/)
3/)`3/)
3/)r3/)
3/)r3/)
3/)J3/)
3/)J3/)
3/);3/)
3/);3/)
<1.&70,
2/(&2/(
3/)23/)
3/)23/)
3/)?3/)
3/)@3/)
3/)N3/)
3/)O3/)
3/)^3/)
3/)_3/)
3/)o3/)
3/)p3/)
3/)$3/)
3/)%3/)
3/)13/)
3/)13/)
3/)>3/)
3/)>3/)
3/)M3/)
3/)M3/)
3/)]3/)
3/)]3/)
3/)n3/)
3/)n3/)
3/)B3/)
3/)B3/)
3/)%3/)
3/)%3/)
3/)>3/)r3/)
3/)s3/)>3/)
3/) 3/)53/)K3/)`3/)s3/)
3/)s3/)`3/)K3/)53/) 3/)
3/)(3/)33/):3/)>3/)>3/):3/)33/)(3/)
3/)<3/)f3/)
3/)g3/)<3/)
3/)O3/)
3/)P3/)
3/)<3/)
3/)<3/)
3/)#3/)
3/)#3/)(3/)
3/)(3/)
3/)K3/)
3/)L3/)
3/)d1.(
3/)d3/)
3/))3/)
3/))3/)
3/)53/)
3/)53/)
3/)C3/)
3/)C3/)
3/)S3/)
3/)S3/)
3/)c3/)
3/)c3/)
3/)t3/)
3/)t3/)
3/)$3/)
3/)$3/)
3/)J3/)x3/)
3/)x3/)J3/)
3/) 3/))3/)03/)43/)43/)03/))3/) 3/)
3/)33/)H3/)[3/)h3/)n3/)n3/)h3/)[3/)I3/)33/)
3/)L3/)
3/)M3/)
3/)c3/)
3/)c3/)
3/)R3/)
3/)R3/)13/)
3/)13/)
3/)3/)z2/)
3/)z3/)3/)
<1/%80,
5/*%5/*
3/)13/)
3/)13/)
3/)?3/)
3/)?3/)
3/)N3/)
3/)N3/)
3/)^3/)
3/)^3/)
3/)n3/)
3/)o3/)
1-(]1-'
1-(]3/)
3/))3/)?3/)Q3/)^3/)d3/)d3/)^3/)Q3/)?3/))3/)
3/)=3/)d3/)
3/)e3/)=3/)
3/)#1/(
3/)#3/)
s@QYe<I
d<HYe<I
2/)i1/(
2/(i1.(
3/)z3/)
3/)z3/)
,)$-1-'Z2/)|3/)
2.(|1-'Z,)$-+(#
lSystem.Resources.ResourceReader, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089#System.Resources.RuntimeResourceSet
hSystem.Drawing.Bitmap, System.Drawing, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3aPADPAD
QSystem.Drawing, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a
System.Drawing.Bitmap
IDATx^\
N&}\K1L
2+@$[a
FcmEe}v
rcmmmE}
v^z<(Ll
zy<Q23
~4Xsm
\iFzm)
TC{Jdo
^zr_I$
o=A{B~06r+,
a->]i~d
qIj3!+
S>_v#jq
[Q{//&
G3&/B$
XFTB^1
\:9+S
BKW/Fu
~iE6.Hg
i/hSm8
c7\N\v6
!'k/N:V
A(E-?tAZ
e~V09s
DB@AsK"u
g@{BZ@0pl
<ihscz
z.]'dLL
ZH&~9Q
R_[^cN
%fUQ[*
KG;y!S
FLWE!v
)2NG1Q
5Lc%!69
l%6)]S
K..>[~{
fDfeX|3&
8bHJKO
MLn*^F
Ht_[b/
OiF:[aET
OPt/s;T1
qq(,.k,W2$
`=A])!
ombVje
W=J%7=,
_uMzv5
</ztsa
c Qvi
L@*`II
)`m%TQ
4[R=.d
h<MkbRg
3^1aA]
t&v_|;N
;Q'06
v~5?er
k0J30L
KY"dWG
OTMtFv
IrXi\X
wv'Z 'H2
0H^Fve).
`m(r]P3`+
]<_?h:wf
CZun07d
G3&$Zi#yd
f4BLJgFx@
O#t)zLT
Hhw%`e
qL$e6|5
/Fr+q)
#' K#!
`"_wyy
.#P*@$@T
,a`e`"
|>_GF'Z
47lcVY
%i@|G}
J!cnd(A
2+ZH`k7
2m2kY:;2
m]#o33u
0;Arne
|G@z.\
n%SfWu
45.cg]<
GvZfi)g4
=Mt#P{
BL1~8RmV
1%]kj>
g[.OKKM_{$Z
WxSJu
_.xx;x
lv^ttB
Vb{+ef
uo'^r
l]ef-&
H?Ddk1
?HsqQm
;}2],~~"bn
s0L3W-
5W\2eO
&kpLE
X*+>"^S
w;lSO^
U1Xcrb
}*WPz##pYP
g0PzXk
*V-p>T2
lJb,8n
$;|Wif
|HJm_@\A
#V?TBV
PZ&WXY%
ew7=fE
XePo"Hx/
aTX!EDd
Oz24,o97
JS%yY}c]u
'PX>c\
OCFcbtZjb
xa@8)mW
M`dE,!
.b$qx=
dT(!!t
&WUfyM
mg@D{C
Rx2.QN
{=JFZA
T/J!<hfD
0!_$P"
O.L:W(
Lvw-o"
r=iC)H2x
+"&@pg
~azt?;
~vn;UX[ed
1T659k-
],BSHf
WQzj4dX
B-V'&67
\C{PT[
n%nLLx
gi~=41
&'Yt%%
"{[T;p
P+Uz*2o@
`P?$P2S
17&]<}
~uMvf|
A`p=AJ.
[;jw|S
:"ZeQ
54=\q7
A>#:<r
gL>f$M^
:v>o:$
1rQ}*~
j{)8/iz
:XY;2k
\{0nEh
[)6V,&
;[IkC4
;9 4aC
m.{d@c
7;I(O)
c:?d`yN
~KB?"de
5c#&0H
zv(&3t
NrLNW'P
dBK[#>
cR9T,s
7=3~F
$hkF#@
YL*{)I
*jY#^O
50&>^b
0<KS}e
_n%_#s:
'Zy9lr
Z^y^5
>_O[v}n
3"lt2Q
JiHc"G
hP+G|j
2O7E4p
!owAg?
zL*=P,
pmHu_7
z|-&0bG
A``MG+
V*L712
n%CQ[U
-% [i4Rw
N<~az*
2Gm+>8
B;n KP
+Je;$_
VjqG2v;
m:?89i
[Oj,FB
)F0NVn%L
#K8G8(
cl>0>^
`W=FR\
UbXO=b(
r,PRwSP
|3at~
"4d1=c
#gK]d4=H
z"-8^z
6XWU>[G
~!-/Oi
idrU3<
tW)EIe
!9eKJ*
_IeS"&
su!yhB
[K%8S#GH-
ovwBI!x
(bk/X2
W`gscM
dzFXQ]K
-6WgOk
3[<XUI
g'-d:9
E2,BaQ
^^kJu-
boGt{5{
ZCwuvNO
:lSp\1e
z {($ ^
yBtio_
/o*:3e
:kk3o$
0b*Sid
xX,zSPzO
{zd.57t
Oq3C{$?
Hp=A0
(].cc0
+;))=63
0N/zvo
dRVGkse
{Q\=
>o{}O^
tS"=JI
\Lntq@
pk0t]>b
N{w)sQ
h(%=su
wSn$d;{%f
)Unn.Y
cB+i;Gs
!H <BN
7~p?yK
BLlsJe[
R*hFi
kYvf^Ha`
mBtx#>7
z7+U4X
pzv'tz
ol*Q0T
n%V=T@
{!}8Xy
O7FOL|
\1}zZ0
%,YzU~}a
0TqCFN
EJ1fFPm
Mu7upv
>_][uf
?~vo^{
;,"cS*)k
VugJ.WK
4]+q!@
KWb.]j=i
Y\W?*j
6iqX %
vYRWw4#9
SxW!oM
T#ZnRh
Vbqo<L
.y5D?Y
ew"w;
lgG=ke}
'oH#}W
K,jw0s
A?-mf-
WnL{W:x
ER{;jX
1,=Fj8h
3Z7TD ,
K2CXS3V
YqYhCLU
?"A^ZJ
G-8& J
[i(j44sj
F$^IXQ
dG?SFl
REi=:Bo%
:YIFVR9{NL
&5(fQay/
z+]KGLJ
$AaOnSy
n%^Ld2e
uaO zf
"8Xz1W
-W}nf3k
oSP+b.
V2`!W{
c\l-R:
zP*@f@
c%RwItb
0f]fY:O>
2XQH7B
WRY1!*
mE@| .
iiWf|zvYt
2jH|XV
2H*{ %D8I
TJbl<,
4bld^1
ix%9O,d+
,ksji
CHP$M?n
c"T\*3y
Qm=Q(U
Bf/L>9T
">OXEM
`H3% []
S-D-qs 8
L=\&K[
/{v;19Q
HH5bM+
A`bqW
CgoAOBhR2
;I{#l4b>6
$96"c8}
vP&3L'
C5o974
K;xH
q+YO]
,J$T"G'P
U-l0|qq
]{4cne
;}g#^K
UB&WOs
`{i5KBX
xDus@.
y)~FL0
nK%aF&
$[>_uE(7X
zQscA6@]Q
/S"@=^
6GAJFul
o)Rw9D(
AY#buC
Ky9;]6
GFns$%jI
c%1O@;t(
Zb d+v
_*~WYr
>g1Y>x
zE.\Eq
_o%g"`
JQgfn|c
&N{P9g
JP*,9-nh
cQQ'4=
*r'qUf
XQgvTg6*4
IpnoP?
VimCva6
#b9~`r+
%`50[O
-DV!d4
sQ?J1A1
no0~-^
| QVU@
zi=|\\
ikl[o8>ke
SCLH8+
M2$57,B
7(%{oS(
[XykT6
DiHyO*x
VS)EGL
\:&w5e
|I^1bA-6
GezLNT6
a!KWNT
2<}6m4
uaw/u
QamvyQ
Pzn5)ar
1YEb*B
&ES7\
W_TS\^
D|3|J4
dg8sO
Z~N=q1
}5?jppN
^Fp| ?
=V$r"4
6MOh"X
k<"<J;
6=W=qj
U:mT]x
!^[Du'E2J
V(m{gr:M
?Ck'8Wa!
ie\,vR
[aqfvu
:|RnM"
2u*y^6
]Bh)\^
"k_Qb_'
,VQhCp
`{!E*S]|
gc]Micva
^YW[yf&
:{/~G;L
7/IT-H*u\
~(^0uEF?
<+ EN%pn
{|#qOk
:py=dx
Kqblb?
/gu8O2i
jMcz*%
&!B,*I
&RBx{p
'VsY)d
\nvt}v
hq^$A]b
`t7UqEp\`
fl(Y50&
Zq>;$+
4@og!s
$65JcE
%|JWM/
(y9\g*
_:*2'r
/~hwGv
`-g#yX
nOI;}e\
<(?ME
ql}Mu)
GrD=pu
@0d=FER
454)/A
nO%B z
djM{hr
hhJ5I.
y|.0K,q
Z>;8~w
om'IK!
QKV8N9T r"
QW{-co
PV)P"+
[d\?Tn
Ky9<}b
8wYSo%
\ NL_C
[o=[r{
F{sIx.
*8E)e'T
ejYF,6m
z_`gM
+&{+kZ
,UEg[J
po'%-w
UBkJzIh
l#jKIG
z{Qx4<[
]ls ;Xx
f1%Na&
|.d+!<
M_oi6/
`\#%=c,Fs
C%bX?C
L}GW)!
I4j8N5
bX1q*s
25dah)/
AR?o!_Qcz
NMck,{
/5Zocc
,_U29O
{P^"Qi7
]i%8>.^
mZ,S=8[
W5q=7qW
:d+YP1,
*nP9f%D
`Z>x=e
K/_?~(r_
vR2Twk
z+90a]|
mmR(39)
]ah*7
A5`yq^
4bb5kl
gkqR#C
3eNLlmSD
4b.M4L
u1T%m(
f_|y%AK~f
LjNRj,
z`/U4N
0M__O=SN
}tK,"8g
t&wTTF
v){}kJ
-W5Z9aF:m
#;p?Op
*<xHjS
o>K@,{
\&vO9!|
=c({?
4mpt{U
SC#LV~Jp
wRwYD=
oQ:1N;L
5B:mFv
bx/_}M
-pyY#w
{e|0Z-
ZL/[~0
J[gI>w
}006vq
\[fuUUM
bz#BfY
I"\KG!
l2fhu~"
xa}pD#>7s
4d"q#BK
LBrSEr
,l4I5_
7P%Z2U
'lyq~7X
8JhaPY
La7a]
n2RF:2
U`&bG}o
qN2g}gC**
e%AFPi
PKe@T@0
y-|b7v*
{w~d><
+\7ejCYh
/Nxm|9
A!6Noh
%s"@-\
gNyuaFJ
&`7^.Dj7
x#-9nl*
!yvss=rI0
&\o%h]
U,7sQk
5UeUfuU
@0iZ;d
Rl\XAo
"WIm<"
y}\ymV
X|>0jc
,&*!xf
;Qzcdf
AB@l0b
hxi|/6V>
w0g^9 &
,\/).M
&#;o]k
rJ,e.>AH
(! Tn
q*p1Y3
\Z*t$%@V
slfq>dC
Ir5~zi
BJ+WM]Za1
ohFrC*
";u+_7
(ZrlKb
G}/mwy
:(|@?F
q/=I$ba
iw9_Dy
>u8HB(
%\~5!}IL
m_c,!`
QQA4vA
(lMk1c
nafUa-
$|=d4Al
y@PE9X
6,d:mx<B
"o_y?D`A
-pqPg'
I,`Wu0
(4RAng
#OF/(Ki
nq1~Q@
7{n[lz3
"L0}on
/cF]x:/,w{'
Ys*ji5
@`@fD8V
n;go/}Q
~=<v<|
uD^/Uh
XCw P}
}x_Kp+
$u`z+7
#{B19Y^;{X
vStv~8HfPi
:#-wH_
?rsg<%
Zv/&e\
1dAz+
Os%ve!
[.GlM!
4tOx~*
@XD9_]wlS
^3wl--
F>R7rEp
~2E:b@
iMl*%s
O9XvY>j
moS2dC
be?+I)b
ooG$!4
^7jl`o
--fPh7L1KC
GLDD;#
n+ W l
4KE'5 4
0Ir,OZb2
Pe?)VN
& x&v%
[K-Thsu
j/E*qg-
;I=eY'
:/7r>);f{
XupOwW
*uiq;S
,j$#h4
5{5=gm
th/kZid-
I5R]vR
f5B.RK}
&YkTKYj
-nLZEe
{(}>7{
h49+U&?
v/d+i#
JMlnxg'e
PjZ6R*VU8
4Mbc4P
|"4@6,1
--qJE|
86&ALnK4
z$?-XQ
#S@N=4
p,%sxp
[0?0E~
TO}2Wl
bG[Eic
'>@lmm/
&Lxuw,
4?2Lcb
QblIImw
}zWxq{
*fFD+lL
/!7.%8
f+iq]Mu-
^L@$fK
<;KxD-A0
-B+fW&<
||1MEpW5
Lc9cyT2
lH&dSJ)
>@$|Mkk
SWSR%p
!jfdS5!eD
IM0^Eq
p6KHd?
?dWrB`
(11y:B
q06*ND
HTo&GW
usK|v!g
Vv0PBi
Zia=EK,wC
lo%6+
_/?f0%p
}vlgNqF
~XQEU{
_KTK$N
mw2<@xo
S?X
0j>a4d
RFkC=f+z
J5l093
mGu416W>l
<;KZ@*
o{KI/;
VO;8Or
7 ZFYx
X5Pdvs
FvfN1!
QnorIj
X5#VsIS
\@fP.b
p+5])I
z2YrT#
2;BxJ<D
p&@<p_r
WS;O(K
skH9u 7(
&S5:=
omyBfn
uXIKlm
ssZ59,
b|f?,i
MB^$TJ/&
6{sRfP
!>~f@@
~}2N\|
Cf,n&~
{.`]O{
h2K<v
#x\%1N
Jgk%QI
>bB!*d
5z{+B*
Lq'4__+
Rcw,o&
t%ehFym
dCzS0D
iA*'Y\O
3 _^?Uw
22i+[{b
lL_rG
A99ZVI
>=Kg8"
of:2lc8
@a^oHE
R~KJ0f
A3),!k
)|TAPZz'S
e-n\^+
v732{f
3YRQ-Jb
'?l[3E
rguKj}
7+gK!(
%[i3{=
EdcY>X
$nS+<{
ihu^IE<9
F!?~zv
"WWUo+B
YHulY-
WH>[I.-.
MKm.u
mJo$DK
2Dim%B
+l\2&]:a
tK'QD6p
9=}KE
$1nLnOs
31;LoJ
Jee]M9
&WpIA[
V:l?P'pU C
v^.ck-
r?&Qzu6%}
_,F|[9J
<l[.U|
o;c.LZTf
c^s><k
]z-gIo
.-_])(3
;/as.cYq
KMH?]V3
91(vh/
lEtU%K
FEYCna
V0V'`)
AP8O%x
{BcFyM
d663^H
LN5VwV
.T}C?B
9?t$bA
j*gS]Am
Ac|~Cmu%X
NGKPsp
B`tU_Y
6 *.gt
1cVy,k
uoz;vc|
g?'W"R
V9&5E
%!>'((
aM|-m[
Antivirus Signature
Bkav Clean
Lionic Trojan.MSIL.Crysan.m!c
Elastic malicious (high confidence)
MicroWorld-eScan Trojan.GenericKD.46814902
FireEye Generic.mg.c0fc593778f04e09
CAT-QuickHeal Clean
McAfee AgentTesla-FCTJ!C0FC593778F0
Cylance Clean
VIPRE Clean
Sangfor Trojan.Win32.Save.a
K7AntiVirus Clean
BitDefender Trojan.GenericKD.46814902
K7GW Clean
Cybereason Clean
BitDefenderTheta Gen:NN.ZemsilF.34088.6m0@ai9yI!j
Cyren W32/MSIL_Kryptik.DLB.gen!Eldorado
Symantec Trojan.Gen.2
ESET-NOD32 a variant of MSIL/Kryptik.ACLX
Baidu Clean
APEX Malicious
Paloalto generic.ml
ClamAV Clean
Kaspersky HEUR:Trojan-Spy.MSIL.Noon.gen
Alibaba Trojan:Win32/Kryptik.ali2000016
NANO-Antivirus Clean
ViRobot Clean
Rising Clean
Ad-Aware Trojan.GenericKD.46814902
Sophos Mal/Generic-S
Comodo TrojWare.Win32.Agent.opwqu@0
F-Secure Clean
DrWeb Trojan.PackedNET.1003
Zillya Clean
TrendMicro Clean
McAfee-GW-Edition Artemis!Trojan
CMC Clean
Emsisoft Trojan.GenericKD.46814902 (B)
SentinelOne Static AI - Malicious PE
GData MSIL.Trojan-Stealer.AgentTesla.SY8XY9
Jiangmin Clean
MaxSecure Trojan.Malware.300983.susgen
Avira TR/AD.AgentTesla.nbrky
MAX malware (ai score=99)
Antiy-AVL Clean
Kingsoft Clean
Gridinsoft Trojan.Win32.Kryptik.oa
Arcabit Clean
SUPERAntiSpyware Clean
ZoneAlarm Clean
Microsoft Trojan:Win32/AgentTesla!ml
Cynet Malicious (score: 100)
AhnLab-V3 Malware/Win.Generic.C4596327
Acronis Clean
VBA32 Malware-Cryptor.MSIL.AgentTesla.Heur
ALYac Clean
TACHYON Clean
Malwarebytes Trojan.MalPack.PNG.Generic
Panda Clean
Zoner Clean
TrendMicro-HouseCall TROJ_GEN.R002H07HH21
Tencent Clean
Yandex Clean
Ikarus Win32.Outbreak
eGambit Clean
Fortinet MSIL/GenKryptik.FIZI!tr
Webroot W32.Trojan.Gen
AVG FileRepMalware
Avast FileRepMalware
CrowdStrike win/malicious_confidence_100% (W)
Qihoo-360 Win32/Heur.Generic.HwMAUBcB
No IRMA results available.