Static | ZeroBOX

PE Compile Time

2021-08-19 16:48:26

PE Imphash

f34d5f2d4577ed6d9ceec516c1f5a744

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00002000 0x000d1f20 0x000d2000 7.21251462846
.rsrc 0x000d4000 0x000005ec 0x00000600 4.17556927351
.reloc 0x000d6000 0x0000000c 0x00000200 0.101910425663

Resources

Name Offset Size Language Sub-language File type
RT_VERSION 0x000d4090 0x0000035c LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_MANIFEST 0x000d43fc 0x000001ea LANG_NEUTRAL SUBLANG_NEUTRAL XML 1.0 document, UTF-8 Unicode (with BOM) text, with CRLF line terminators

Imports

Library mscoree.dll:
0x402000 _CorExeMain

!This program cannot be run in DOS mode.
`.rsrc
@.reloc
w$sR
B,sR
v4.0.30319
#Strings
get_Label10
set_Label10
get_Label11
set_Label11
ThreadSafeObjectProvider`1
get_TabPage1
set_TabPage1
get_Label1
set_Label1
get_Panel1
set_Panel1
get_TableLayoutPanel1
set_TableLayoutPanel1
get_TabControl1
set_TabControl1
m_Form1
get_Form1
set_Form1
get_Button1
set_Button1
get_NumericUpDown1
set_NumericUpDown1
get_TextBox1
set_TextBox1
get_Label12
set_Label12
User32
ToInt32
get_TabPage2
set_TabPage2
get_Label2
set_Label2
get_Panel2
set_Panel2
get_Button2
set_Button2
get_TextBox2
set_TextBox2
get_Label13
set_Label13
get_Label3
set_Label3
get_Button3
set_Button3
get_TextBox3
set_TextBox3
get_Label14
set_Label14
get_Label4
set_Label4
get_TextBox4
set_TextBox4
get_Label15
set_Label15
get_Label5
set_Label5
get_TextBox5
set_TextBox5
get_Label16
set_Label16
get_Label6
set_Label6
get_TextBox6
set_TextBox6
get_Label17
set_Label17
get_Label7
set_Label7
get_Label18
set_Label18
get_Label8
set_Label8
get_Label9
set_Label9
<Module>
get_HA
set_HA
FromLTRB
DrawBorder3D
get_TD
set_TD
RectangleF
ParamF
get_DM
set_DM
get_BP
set_BP
get_AR
set_AR
get_SR
set_SR
get_CS
set_CS
get_TT
set_TT
W__________W
X__________X
Dispose__Instance__
Create__Instance__
value__
get_WorkingArea
System.Media
System.Data
ProjectData
get_KeyData
keyData
FromArgb
mscorlib
Microsoft.VisualBasic
Form1_Load
add_Load
frmDialog_Load
TT_CheckedChanged
add_CheckedChanged
remove_CheckedChanged
add_DropDownAppearanceChanged
remove_DropDownAppearanceChanged
_Display_DropDownAppearanceChanged
OnDropDownAppearanceChanged
add_DataSourceChanged
DataGridView_DataSourceChanged
add_ColumnSortModeChanged
DataGridView_ColumnSortModeChanged
add_CheckStateChanged
remove_CheckStateChanged
_CheckBox_CheckStateChanged
add_SizeChanged
DataGridView_SizeChanged
add_ColumnWidthChanged
DataGridView_ColumnWidthChanged
add_ColorChanged
remove_ColorChanged
add_ColumnHeadersHeightChanged
DataGridView_ColumnHeadersHeightChanged
OnTextChanged
OnDataGridViewChanged
add_ColumnDisplayIndexChanged
DataGridView_ColumnDisplayIndexChanged
get_Checked
set_Checked
Interlocked
set_Enabled
get_FilteringEnabled
set_FilteringEnabled
get_AutomaticSortingEnabled
set_AutomaticSortingEnabled
set_Handled
get_Canceled
_CloseDropDownCalled
_filtered
get_IsDisposed
add_EscapePressed
remove_EscapePressed
_TextBox_EscapePressed
add_AltDownPressed
remove_AltDownPressed
_TextBox_AltDownPressed
add_EnterPressed
remove_EnterPressed
_TextBox_EnterPressed
_EnterKeyInTextBoxPressed
get_Focused
add_Validated
remove_Validated
_TextBox_Validated
validated
m_FormBeingCreated
get_TextDisplayed
set_TextDisplayed
System.Collections.Specialized
Synchronized
get_SHA1CryptoServiceProvid
DataGridViewBand
MessageSound
SystemSound
get_Clipboard
Replace
get_pnlWhiteSpace
set_pnlWhiteSpace
_EditorService
IWindowsFormsEditorService
GetService
get_Appearance
set_Appearance
get_HasDropDownAppearance
set_HasDropDownAppearance
ColorPickerAppearance
CreateInstance
get_GetInstance
defaultInstance
instance
get_DataSource
VerifyDataSource
BindingSource
GetHashCode
get_KeyCode
set_AutoScaleMode
get_SelectionMode
DataGridViewSelectionMode
get_IsCurrentCellInEditMode
get_SortMode
set_SortMode
DataGridViewColumnSortMode
get_Adaptee
TabPage
get_Message
m_CheckbookMessage
get_CheckbookMessage
set_CheckbookMessage
get_lblHeaderMessage
set_lblHeaderMessage
ShowMessage
get_lblBodyMessage
set_lblBodyMessage
ProcessKeyMessage
AddRange
CompareExchange
Invoke
IEnumerable
IDisposable
Hashtable
get_Resizable
get_Visible
set_Visible
Double
RuntimeTypeHandle
GetTypeFromHandle
FillRectangle
DrawFocusRectangle
get_ClientRectangle
get_DisplayRectangle
GetCellDisplayRectangle
Border3DStyle
get_Style
set_Style
get_InheritedStyle
DockStyle
DataGridViewCellStyle
cellStyle
ColumnStyle
set_BorderStyle
DataGridViewAdvancedBorderStyle
advancedBorderStyle
set_FormBorderStyle
AdjustColumnHeaderBorderStyle
get_AdvancedColumnHeadersBorderStyle
get_HasStyle
FontStyle
RowStyle
get_Name
set_Name
FromName
HandleUserEnteredColorName
DefaultColorName
get_DataPropertyName
gamename
get_AllowNoOne
set_AllowNoOne
WriteLine
Combine
set_Multiline
get_ListChangedType
serviceType
get_ValueType
set_ValueType
SizeType
get_DefaultHeaderCellType
set_DefaultHeaderCellType
GetType
Compare
get_Culture
set_Culture
resourceCulture
get_InvariantCulture
ConsoleApplicationBase
ButtonBase
ApplicationSettingsBase
TextBoxBase
Dispose
StrReverse
Invalidate
Delegate
DebuggerBrowsableState
EditorBrowsableState
DataGridViewTriState
cellState
PushButtonState
ComboBoxState
OnDeactivate
add_DataBindingComplete
DataGridView_DataBindingComplete
get_White
ThreadStaticAttribute
STAThreadAttribute
CompilerGeneratedAttribute
DesignerGeneratedAttribute
GuidAttribute
HelpKeywordAttribute
GeneratedCodeAttribute
DebuggerNonUserCodeAttribute
DebuggableAttribute
DebuggerBrowsableAttribute
EditorBrowsableAttribute
ComVisibleAttribute
AssemblyTitleAttribute
StandardModuleAttribute
HideModuleNameAttribute
DefaultValueAttribute
DebuggerStepThroughAttribute
AssemblyTrademarkAttribute
TargetFrameworkAttribute
ToolboxItemAttribute
DebuggerHiddenAttribute
AssemblyFileVersionAttribute
MyGroupCollectionAttribute
AssemblyDescriptionAttribute
CompilationRelaxationsAttribute
AssemblyProductAttribute
AssemblyCopyrightAttribute
DefaultEventAttribute
AssemblyCompanyAttribute
CategoryAttribute
DesignerSerializationVisibilityAttribute
RuntimeCompatibilityAttribute
AccessedThroughPropertyAttribute
DefaultPropertyAttribute
get_Value
set_Value
m_ThreadStaticValue
_filteringEnabledValue
_automaticSortingEnabledValue
GetFormattedValue
formattedValue
get_UseColumnTextForLinkValue
get_UseColumnTextForButtonValue
_selectedFilterValue
_dropDownButtonBoundsValue
_dropDownListBoxMaxLinesValue
WithEventsValue
GetObjectValue
GetValue
EditValue
add_Leave
remove_Leave
_TextBox_Leave
OnLeave
Remove
SpecialNameAttribu.exe
set_Size
set_MinimumSize
set_MaximumSize
get_CaptionButtonSize
set_AutoSize
set_ClientSize
ISupportInitialize
teamsize
IndexOf
get_Tag
set_Tag
System.Threading
get_Padding
set_Padding
AdjustPadding
NewLateBinding
IsNothing
System.Runtime.Versioning
get_SupportsFiltering
GetResourceString
CompareString
MeasureString
ConvertToString
DrawString
Substring
disposing
get_SupportsSorting
System.Drawing
_dropDownListBoxShowing
ShowDialog
dialog
SolidBrush
get_Width
get_FirstDisplayedScrollingColumnHiddenWidth
get_DownButtonWidth
get_VerticalScrollBarWidth
get_Length
get_Black
Button1_Click
TabPage2_Click
Button2_Click
Button3_Click
add_Click
remove_Click
OK_Button_Click
Cancel_Button_Click
add_MouseClick
remove_MouseClick
DropDownListBox_MouseClick
_lostFocusOnDropDownButtonClick
set_Dock
dwWakeMask
get_Vertical
Decimal
get_DropDownListBoxMaxHeightInternal
OKCancel
System.ComponentModel
TableLayoutPanel
bWaitAll
get_AllowAll
set_AllowAll
InvalidateCell
get_HeaderCell
oldHeaderCell
DataGridViewAutoFilterColumnHeaderCell
DataGridViewColumnHeaderCell
DataGridViewHeaderCell
set_CurrentCell
DataGridViewCell
add_Scroll
DataGridView_Scroll
DBNull
TabControl
set_ActiveControl
FromControl
IButtonControl
DropDownControl
ContainerControl
SetControl
control
get_Item
get_SelectedItem
set_SelectedItem
System
ConvertFrom
Custom
get_Bottom
DropDownForm
GetParentForm
set_Maximum
resourceMan
Boolean
PointToScreen
centerFormCenterScreen
get_PrimaryScreen
set_TextAlign
System.Drawing.Design
System.ComponentModel.Design
System.Windows.Forms.Design
set_Margin
get_Column
get_SortedColumn
DataGridViewImageColumn
get_OwningColumn
DataGridViewLinkColumn
DataGridViewButtonColumn
FilterWithoutCurrentColumn
DataGridViewColumn
DataGridViewAutoFilterTextBoxColumn
DataGridViewTextBoxColumn
SortByColumn
set_ShowIcon
FillPolygon
DrawPolygon
get_Version
Conversion
get_Application
MyApplication
get_Location
set_Location
SystemInformation
System.Configuration
get_ScrollOrientation
System.Globalization
Interaction
System.Reflection
ICollection
TableLayoutColumnStyleCollection
TableLayoutRowStyleCollection
TableLayoutControlCollection
PropertyDescriptorCollection
ObjectCollection
ListSortDirection
get_MousePosition
set_StartPosition
FormStartPosition
NotSupportedException
ArgumentNullException
InvalidExpressionException
TargetInvocationException
InvalidOperationException
get_InnerException
ArgumentException
get_OK_Button
set_OK_Button
get_Cancel_Button
set_Cancel_Button
DrawDropDownButton
DrawComboButton
RadioButton
set_AcceptButton
DrawButton
OnMouseDown
NumericUpDown
CloseDropDown
ResetDropDown
ShowDropDown
add_KeyDown
remove_KeyDown
DropDownListBox_KeyDown
OnKeyDown
CopyTo
CultureInfo
MemberInfo
CheckbookMessageProductInfo
PropertyInfo
Bitmap
set_WordWrap
get_ContextMenuStrip
set_ContextMenuStrip
get_Top
DoModalLoop
get_TabStop
set_TabStop
get_ParamXGroup
set_ShowInTaskbar
Linear
set_UseSystemPasswordChar
IsValidColorStringChar
get_KeyChar
IServiceProvider
m_AppObjectProvider
m_UserObjectProvider
m_ComputerObjectProvider
m_MyWebServicesObjectProvider
m_MyFormsObjectProvider
_DropDownHolder
PositionDropDownHolder
sender
get_SortOrder
get_ResourceManager
ToInteger
ElaColorPicker
MouseEventHandler
DataGridViewBindingCompleteEventHandler
ScrollEventHandler
DataGridViewColumnEventHandler
KeyEventHandler
System.CodeDom.Compiler
IContainer
set_Owner
ButtonRenderer
ComboBoxRenderer
get_User
ElaColorChooser
get_Filter
set_Filter
UpdateFilter
RemoveFilter
_currentColumnFilter
ResetFilter
filter
add_Enter
remove_Enter
_TextBox_Enter
OnEnter
get__DisplayAdapter
set__DisplayAdapter
get_DisplayAdapter
set_DisplayAdapter
IDropDownDisplayAdapter
CheckBoxDisplayAdapter
ComboBoxDisplayAdapter
$STATIC$get_ColorTypeConverter$0012818D$_Converter
get_ColorTypeConverter
GetConverter
get_Computer
MyComputer
set_Anchor
get_Color
set_Color
GetInvertedColor
get_ForeColor
set_ForeColor
get_BackColor
set_BackColor
set_UseVisualStyleBackColor
SetColor
ClearProjectError
SetProjectError
IEnumerator
GetEnumerator
Activator
.cctor
UITypeEditor
ColorEditor
ICustomTypeDescriptor
MemberDescriptor
PropertyDescriptor
IntPtr
get_Graphics
CreateGraphics
graphics
System.Diagnostics
dwMilliseconds
get_Bounds
set_Bounds
cellBounds
get_DropDownButtonBounds
InvalidateDropDownButtonBounds
SetDropDownButtonBounds
clipBounds
SetBounds
SetDropDownListBoxBounds
Microsoft.VisualBasic.Devices
get_WebServices
MyWebServices
Microsoft.VisualBasic.ApplicationServices
System.Runtime.InteropServices
Microsoft.VisualBasic.CompilerServices
System.Runtime.CompilerServices
Microsoft.VisualBasic.MyServices
System.Resources
ElaColorChooser.My.Resources
ElaColorChooser.Form1.resources
ElaColorChooser.CheckbookMessage.resources
ElaColorChooser.Resources.resources
DebuggingModes
SystemBrushes
GetProperties
pHandles
System.Windows.Forms.VisualStyles
get_RenderWithVisualStyles
get_EnableHeadersVisualStyles
get_ColumnStyles
AnchorStyles
get_RowStyles
get_DropDownListBoxMaxLines
set_DropDownListBoxMaxLines
DataGridViewElementStates
BindingFlags
StringFormatFlags
Strings
get_Settings
MySettings
DataGridViewCellMouseEventArgs
DataGridViewBindingCompleteEventArgs
ScrollEventArgs
DataGridViewColumnEventArgs
KeyPressEventArgs
PaintEventArgs
LayoutEventArgs
ProcessKeyEventArgs
BorderWidths
ReferenceEquals
get_Controls
get_Items
System.Windows.Forms
get_Forms
MyForms
SystemPens
Contains
set_AutoScaleDimensions
Conversions
System.Collections
MsgButtons
get_Modifiers
RuntimeHelpers
PopulateFilters
_filters
SystemColors
Operators
gamepass
OnKeyPress
MsgWaitForMultipleObjects
components
set_RaiseListChangedEvents
DoEvents
HandleDataGridViewEvents
HandleDropDownListBoxEvents
UnhandleDropDownListBoxEvents
DataGridViewPaintParts
paintParts
DataGridViewDataErrorContexts
get_ContainsFocus
add_LostFocus
remove_LostFocus
DropDownListBox_LostFocus
GetFilterStatus
get_Keys
Concat
StringFormat
get_TextFormat
set_TextFormat
_ButtonRect
buttonRect
get_ShouldDrawFocusRect
_ColorBoxRect
colorBoxRect
_TextBoxRect
textBoxRect
DivideObject
SubtractObject
GetObject
MyProject
LateGet
LateSet
_currentDropDownButtonPaddingOffset
newDropDownButtonPaddingOffset
get_Left
get_RightToLeft
get_ControlLightLight
get_Right
get_Height
set_Height
set_IntegralHeight
get_ItemHeight
get_HorizontalScrollBarHeight
get_ColumnHeadersHeight
get_ButtonHighlight
EndEdit
IsLetterOrDigit
EndInit
BeginInit
GraphicsUnit
get_Default
get_DialogResult
set_DialogResult
PointToClient
DataGridViewElement
set_Alignment
set_LineAlignment
StringAlignment
HorizontalAlignment
ContentAlignment
InitializeComponent
get_Parent
get_Current
DropDownAppearanceChangedEvent
ColorChangedEvent
EscapePressedEvent
AltDownPressedEvent
EnterPressedEvent
levent
ControlPaint
OnPaint
get_Font
set_Font
get_Count
get_ColumnCount
set_ColumnCount
DisplayedColumnCount
get_RowCount
set_RowCount
DisplayedRowCount
set_SelectionStart
Insert
Assert
Convert
report
IBindingList
HideDropDownList
ShowDropDownList
ArrayList
SuspendLayout
ResumeLayout
PerformLayout
OnLayout
GetDisplayLayout
MoveNext
get_Text
set_Text
get_ControlText
get_ToolTipText
set_ToolTipText
get_ErrorText
set_ErrorText
errorText
SetText
get_WindowText
SpecialNameAttribu
get_DataGridView
dataGridView
IBindingListView
set_KeyPreview
get_CurrentRow
get_IsNewRow
DataGridViewRow
get_Window
set_TabIndex
set_SelectedIndex
get_ColumnIndex
get_FirstDisplayedScrollingColumnIndex
rowIndex
set_MinimizeBox
set_MaximizeBox
get__CheckBox
set__CheckBox
checkBox
EditableComboBox
_dropDownListBox
FilterListBox
get__TextBox
set__TextBox
get_TextBox
DialogKeysProcessingTextBox
ElaColorChooser.My
get__Display
set__Display
EditableComboBoxDisplay
display
get_ParamXArray
get_AllowLobby
set_AllowLobby
ProcessDialogKey
ContainsKey
IsInputKey
get_Assembly
OrderedDictionary
op_Equality
DesignerSerializationVisibility
IsNullOrEmpty
get_IsEmpty
MySettingsProperty
ClipboardProxy
WrapNonExceptionThrows
ElaColorChooser
Copyright
2018
$64b23961-ced7-48ee-a643-9ab35a655ee3
1.0.0.0
.NETFramework,Version=v4.0
FrameworkDisplayName
.NET Framework 4
pnlWhiteSpace
lblHeaderMessage
lblBodyMessage
TableLayoutPanel1
OK_Button
Cancel_Button
_CheckBox
_DisplayAdapter
_Display
_TextBox
Label1
TextBox1
Label2
TextBox2
Label3
Label4
NumericUpDown1
Label5
Label6
AllowAll
AllowNoOne
AllowLobby
Label7
TextBox3
Button1
TextBox4
Label8
Panel1
Panel2
TabControl1
TabPage2
Button3
Label9
TextBox5
TabPage1
Label10
Label17
Label16
Label15
Label14
Label13
Label12
Label11
TextBox6
Label18
Button2
MyTemplate
11.0.0.0
3System.Resources.Tools.StronglyTypedResourceBuilder
16.0.0.0
KMicrosoft.VisualStudio.Editors.SettingsDesigner.SettingsSingleFileGenerator
16.7.0.0
ColorChanged
System.Windows.Forms.Form
Create__Instance__
Dispose__Instance__
My.MyProject.Forms
4System.Web.Services.Protocols.SoapHttpClientProtocol
Create__Instance__
Dispose__Instance__
My.Computer
My.Application
My.User
My.Forms
My.WebServices
My.Settings
The currently selected color.
Appearance
gSystem.Drawing.Color, System.Drawing, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a
VTrue meanse the control displays the currently selected color's name, False otherwise.
.Sets or returns the appearance of the control.
lSystem.Resources.ResourceReader, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089#System.Resources.RuntimeResourceSet
PADPADP
lSystem.Resources.ResourceReader, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089#System.Resources.RuntimeResourceSet
PADPADP
lSystem.Resources.ResourceReader, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089#System.Resources.RuntimeResourceSet
hSystem.Drawing.Bitmap, System.Drawing, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3aPADPAD
QSystem.Drawing, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a
System.Drawing.Bitmap
IDATx^T
^hd1$M
4eUVV6
WVV5eg
s63f{MUS
7+O[PZ
`pq{yPQ
lL6x]X
y=Zouy
qZ?V<i
uA;s}5
lQ!V-Q@*
dNQPk
Zc]-Gn
-z(&{D
!b0<I
/DTH)!
'muX]I
M{a8~v
:, \aa
k1X+}p
6^#VuH]u
^z`rpd
3H67"
.@M6 C@x
$1u-^H
%Rcyh-
ET/;w
\1,j{r
SwN.:{`
fLBKiT;
,}D68R
zWXK#v
R'@I2-O
5D0H=t0
^uuL`
hUz.N-
dBm+b:
F"8q3v1y
x<4S#E
z7p%>@=<
CA"h$"
R_HqA[
I.RbO"rB
@m{jh=gX
v[zlP{nS
MBe"kr
*G/:o
;6>@b0
&v@HV#
Eb#],+
Q&<\k2
f<pS|#!
{2tA\1W
\<~~Y<
{sMO;9W
YLhL8j%gsz
\ 9QT[
=YH*8:rC
ev,."947ng5U
2.tm)S
>HD4nZ
tzI/;Rb
xD*B1U
Z;$I OD
6 wtW8
7LTxoI
KK)YhY_UU
duUSy)
r6va[p ~
|[2Qv9
@UPcQ0
rPoxS
:Qo,6_
N-y-Lg
9O@%Cz1
X<`(9\
fi3Car
"EvN2A
63XEaB
-ENf\JH
_z%f2j6
b$7IWF
]~1 b"
5\DyPV
9{#(*<
tvU7W`
5}\{|M
:p)}W&
Ya@BZ+>'
0"P?~~Z
dtxw'J
J~4MX0
qXxIg8
90CUWi
5^&!:"
4Ao.P02
4y@=PnQ
$$!Hy8
L*\L3pjaA~)
1(Wj]a
1bP!Z2
n: !-y@
*j]g8dI
^pt]:D
,6qx C
.Gf^<S.
VA*3~p
(M60c
1bRN89
;M,\t AXn:1wa
%G6uxM
QP-_ U
y+8l7r"
Uz_o -
6l$B5M
Ac,O:K%;}
p43{P}
a=Zj,<
EiSLfH
o_[*~
TdsvZ?D
_RSrpJ
#,:X?8
]V**9_
r$)>iFJ
gu1V'B
Vu3&P|/
r#yDRh
129X'V
TD5bB
b83Bib
xI('+na
f_V J9
l|L4wS
.>iI,J,#
uQA~.}
'n!o^L
#GDIno
,#CJq=
_J4$;P
-HSw;xD
+\ ;R*
>2x.{+
(P,Vo>T
000b$?
t:z2$#
?I5#^u
y[.?ik
(W#zO^@
*YU6Z<j
MzRxyZx
RkGRRn!
1h}5xy
}<iR={
CSgU?~?
'%qRY
C~qcCKUc
[7Ji1f
V0g<~%
&t98NXdd
N<oyfW
cG8Iig
<g|}^%
K#W4~9z
_>/lv
{?n[Ut
v<9 jcH
$oDz!O
tQg-f9\
C8roJ;^
bBp/pg
x^L]N Y
{wOE"'~0En
\\<Qmg
>wNnth
EG[H87a
}`CK]DNO
EB+9OJ3
^"rhI&
W?_iY
^+>NX7
$PbZ%%%
Hq>Hi
[aD7pu
RZWoD<
(wy {o
uZz9KP
@}></~h
cL<^g-zS
n<6~kL
8nx_sE
(W.rId
K1WXN}g
<0ngk| |
w|l%t0
!%QCk
JvR4Xa
'F4Tg"rBx
/S i3P1
;,>{h&n
)y3!pe
!cB"K|M
8B\^d>d
?/2_|J
~ryV<+
Snvh0I^
ECjr22"
C^6J]]+w|
-/+MT1f`0>
b>&,2s
;a]{/X
5_a.8v.
u0l[CI
5)(a,BnD2
\a>FVi
Fj=8=N5
8=E/{2X
b<zP|[
OQc3U;
}Q)Q&L
Z/#IO9
|\H)"8
(j""wk
qOAWGps
c{Xtk|
;O3ZUc
yqU:lPu
y`}W7W
`;::q.$M[
\Tr5W:xh
&T]Ws^
EyFZp0
S&IW*U&@,
4BRLwn
>o?ySER
^k}CoH
IvU5'6*
YSf(:,
\],z/?;g
t1Quv
kGS2_Y0
/AY3X2o
B^8}u
aeyf}@
o_5 Ep
n_iF}?;
T0)pF>
Q?taoNU
uH;Ar?
l+|.:#
04Aq>2P
pV*)Hbp
<ausY)
V?ys))
Wgg*~wN
fZ\Qsg'
o9/LBg
5]Jak&
yk%Iq,
MuEG$2T
*D2L0h
#=#`Yx
IDAT4o
$muxS2z
4?y:/lV/
)`seP<
2()g1"#
|]<ET$
`H#&#(J
lJ&3a!
}NX{,~
X[b\mR
^*..[]3
h?;oB0
YWUAg^
%@qb~Yqs'
//>HgV>
w|Aako
gPQae9
9QT#1R
$M]3BC
LP'tFY
ikS`XY
+_Zm]2d
aeQ;$e
QkP+AMQ
MFp.4JB
{E*JA)
@ztqaEAqsm
8db/qN?r
>as\)0
Btyv1/"m<U
!R1^'^C
,8 cpa
3 L]Tj
5*$=.|
n>vB!_
e[C@|}w
[.8K)]9
2sA.#e
/`v !@
y$&&m"
ki<"(nA
`GBR=M
uPX*f-
qOIIAnx
NHYR4-&
EH4XM#
{T<Y,m
X:Cw5A9
9~?"W
F#C#~N&
ZTSG"1
-g&4O
"">)EwXz
#I'[Jj
2ssQc5
!$K(R,
8:B)2~
cr*eLN
Fl;5Wo
!_DEb
G%NH8P):
uM{3Jg
"*}C%U
(JX+"$
x5P8&O4SR
Ta"u22"
@_k"R9
]{ZV!66
sP!%NA
w/E83A
l1J.4T
i?`9kd'
_w+}aM
eJ#ldY
.LYsY9
`E4~.|
4Hz`&z
.@2I-B'
T3>.M5
b?*7iB
q!h`@p
IMvIhp
N4=\-5
|v~x"+
s&4h_V
M-J{WW
|?whfh_
$w|tJ
!NV?Xi
])^&.g
>OK8w_
(a-C=4
arJb@@
<D,}_P
9S"HFK!
dk3mXNqO%
\(PQnjDXYc
IPu0>~&
YdUxT>y
\]$)FId
z&|WRP8
wHa)n,.._
~eoEKG
QVX2Ye-
0{$X`d
gOL)]BN
-Pm<b
l1?+9
R(?`>w=
:"Y%+MFH
yxRUHh
k~1NSE%
K-(Xk+\
IDATWlQ
2A%PAvC,
e@O_vw
$4\L)0
X}V1yF
w/?<_=
oZl^`cMQF
9qq_WY
MmLxr_
&.i|r.
5,U=OG{l
UYw.6x
)'Vpe
I0M*KJ
J?-\{.7
ZII<~^*
*Am?;,-
;JUTtkbaF
dj%~|rQ
#NF!1a
EH& Gvqh
tHNGb
q<NA~&&
}a~.>^]
|]{!wh
1sUtVDz
!_g4%>L x
sM%<y[
zb9w}p
}LxLgb
'Qpp{V
e]X7(`
VZ$^Aw@H
5C}Ik%
Z@~0g ?}zq
=2YaxL<
+?Zeo_
_+]CrWr5h
$;Qri1
YLNX14
Ui&;6=
@fn'%*
-<:5]7
`b#y*Z@x^y
?^"Jg'F
nB/tf
p0fBa_
_gZ1N:
Ao%g{WX
/Lf@$@~
GX^7Y=
,Z;8Iu
JR\vHcBa
Wvi658
Eq$e6"5
X,R9PV=
Oc\y$%
0 +,EZ
iDn9A)v
NL[yM5
*-Bhie
o&GtVTO
R6VeLz
u3f*,|/EE
%$\Whh
<O (PAT
@vV^9X
3%.#!-
t.%G6h
4ITj5&
IKUcE!V6X
o+BvTG
_7f<_e
+LHe&"^
8.V$cY
~BD~Jc2
~wZ]fb+
,?AF\k@<
J BH@()*`
=h.q=
zJ8JLP&
{lATKn
m'31E
M /Zz8z
,oO:qX
b%RP]%
MIQA!C
=3n=C=JyIQi
Aa[oM-
y^SX<x
;/HAMT
XcR!Q8
4Lf2fIQn
UU]yFF
9mW\TUm
ondhGz
}p;qv#k
j',|+G%+&(
0n"pmAV
>"h=MB
I9jc1y
Rix93 r,
DD7c"<
b~yyM1
EXap\.
;-Y;mT
!I1gJDf"
P6@*TAq4
^7T|{q|
^a.h2S]
+l%Eb5#
bRl+dN
05:ZV_L
-1HuJf#
YaFULV
v[!VQ.
bvQI9|
uIL@BHw
4R[vops
x.Vc7oh
/lf#j3
.1zJ}Gh
\Lp^&E
QGSB&Y
a5,|O7
|=-BhJ
0M2Y~J
\p@<@l
XVNv;eL.J
F_K6[}
&Lw=@G<I
2Uhn*)
z?PZL|
H2ha|V
~=05&*
<?p5'dxD
|L6lYv
3D.tVX4
&t?;R
]bz0Z O
I28yZ
YxyOK73
NYVy?R*Uj#B
.9+"}5
~CuT:b
xPu(
M,H{>&
h~ L{\E
?><R!?
+0;h&H
,}Z=`R
Z:MW"V
]++{p\
3^ `pD
]au4qj
mn[9?8
Ui2!SH
w:x*[
k$B^U$i
.S8VEy-
V(@~@Nv9HL
n|kR6k
'=02W
Mc[~Myimmy[G
,; lxF
r"3C/+
+ ~h{5
wsBFO>F
w}Ol{8o
'PMQlg
_yQ*D<
#<]D,@
%%L4z,
L|_'Pi)
7u|7?>
_kNm~`
z}xM7s
)S[';.
nKI}m~
w9{\JJ(^S
B+!YM&2
bR@ W5
&:+l5i
"2T)@M
IB2SBx
LT|By]
sY"6Iy
@`@r@~@l@`
{$EBB(
Rap4]5F
,e!HkF
}{)HPu
!GKs],VUR
%%kf+[|KX.
v - BP{}#
G i+v
/me*_ ' *q
O9|~Xf)
{T*}]v8
Zov=vMj
r=AP#D
Vo<!F2M
UM1Ya
1JCvY>S
,'$%d
2Ahx)"-
bkdq4RJ
{/?Qxg
VE|*so
n|zvCW
T$"V^;
}EQc+&
CFYUcy9
Z;)*/Z
Sk_9O.v
'.^_o:<rfj
9iZb~k':
AD~0zl9d
H34ytO
B);"jka
g|~]{|
1m[}0W
~R6hit
6L, -0P
+"OEH
c9iu/C
<CYk@i
n/~9pT
_==%5[5
<_q9I}
/G,]qv
+,EC]G
m:Ef#W
k,bPFU
NXh,[}aHao
=,^=ul
V=:_;h
,BD}"H
I(+a89{
FCa&_LQ
rG+;]-
s>a6W[mG@-
EJD-cx`
q=,rg}
Vc:Jt{p
m=7ADK
9Y"llS
|'N 21
er6KI{
B{SD*%
jM +,F
[&>QbR
NPXPQ
sA9eNJ
D<q#GD
-1hNDQu
Ttixirr
"vFXmh
j27<,2
S}^:/0-
45U(|l
R;P]p>"
mX~PDA
sS0XC{|
L1c{< +
z}.*X\6
-_@yQB
]&q\X3
!\ws.E;=|C[
9[!D2H
6ABKNi
6P-5/!
%]}4*P!
f !8+P<
j`T,B>
r,DWv>
GW(S^>
Co>9x%%
V._6:m
hF;mO:u0KTBdI+
@6'1I@CI
]rAu5W7T
{>|JNV
_k7auo
H.O1u`
a(w9"f
pmA=JA
VUb!zo
td{m%]
jOwp#M&
IKUrWL
soxsk
#?iOBg
s]&|2wK=u
'j}18"
`^/'tq
4/e?Y(6B
:C=^>v
r.Tz_2
G2`X8T
ZTl-x7N!#d
~X7dS\
P`*Xv:
ho4KAb
nC&U9X
r0)6U7
d%>7h9
o|>>s)
q_ZL#tfI
_]nqF>
AB+yIwB
.Xh!rE
<ksExb
+vj$R8
!1&Qsx
"L8*#&
"!GL0z
q-D*9&Q
*_5Y?y
^!:dr EB`
"UP )&
3exiWD'
#i'2J5Y
/6,R(z
j] C,P
FLr9l
AE:V0@rp
q P9p?{
=[<id(BI!Z
9yE,
;MVj/K
wJBZZ[
Z9m]W3b
,tuCE%d
3V!@`p
N>VN-u
#(3 6 o H
^*Hj~,
CW?z%
QAu;gul<
<k]hL4?
Q$"Bbc
7cj\c&
VX1@//
5Atxjwd
BB:v~>
&EGtw=
!I|D@L
GL`Z]T
n7LrV5e
V$PDYY
=k"1(/
w9SrDG&
Xw'dIXn
7AuCAA1[(z
8Vg$o~
2#f%GP6
ji{8>s
*!JB+
qCg[1M@
OG4~ R
,@r@B@
b3?N)Y
tWcZ%``E"yL
jr&qEt
soq\h
`Acp/%T
|v,3
?xGz"$G
@R@qY)
e%Ut0xF|
ruS]:9
f;Rk.\
zea4)lM
D=h}/F
xf)TZ>
RKkMs5
XNoH4y
a2q-#5>
hWD<[r4
d{?yTR
hrS=veS
)~<Z1y$
FKN>ch{
r+PvQK
jfiQ8>N
-zR}=N
T|~/:T
j?0!Pz
k"sWkqS
j!=Z24
?\xU2C
6LH@N@
l9r9a~s
Gvl{mZ
Qwx?1e
73;j11U
W=2!`
du>:H<
l=mzN>
Vc)s-b
dyeXxz
E~\s?A
kwO-aO
MH">5f
oODuz=
W|t,[]
\"4Z-}
mW-PjO
!Ia(i#
-_fJFN7+
/(UqN
{8O`nqr
woZsk:
wXzi!B
)!Y..WA;
+C: u=
D?o{i)*
[x{+|\
*feX88p
$h>[.
7NYs[;V
a"QtjN
rk~XoF
SEMO_B^
Tc3w$|
B`}}:uq
ejoae#
`UK.V<9%z"
I43Z-$
\a[W7J
^^}hDo
,Ft_>2
=CrLr"
-l3|yy
97:i>d
mQluf)
;f}E]b.
J_pku?
Qs1IPZ
:2R@#X
!Qeu>2|
&ysK_/
IW4g1v
;> Oft
hEi0BNfX
up.4P=
DXt56i
QEc.:3
g]a99,iA
FoEuab
>MiPa4qw
+47c;o
=ny4zU
?q[K|x
YuX7}JQ
&7-r:Z
bU1Xpy?
94b^%s
60,1@M
[9/u-a
j.3[5"b
Uqj_AW
\Q;'Wl
nqO<2h
>u|%}45b
?OC(<_
y46B5;
{"H%g'H
HnN2)pHI
s^-0[6
s:Uwn)
k/; 0H
E|HeVNwK
3s}P`g
62D@<u
UrPu"1}
ZmZ9e_
"DJti
j KLNE
&i?l{{ol
CU<V0Q1
"K3|7=
OMRnHRcY(O
hRuq&31
1pER6C
CQ@l&H
zG:XDL
_d;L0\
:e-&gB
fLwxr
RM|:U@x
'!8#$ue
|#{0fH&c
)>c}s/w
M=k{sTd
/HG&,1
oVJcAA
vCUA)J
e>yygZt
%~v!4l
Qv6W}V
e5ui1
6BN(=%R,
4WVYYd
z31:s
Fp5{O]
tXOQ~q
,2826v~S
tXl{.I
z kQ3qu
#&G1bNap
!lQE#Cw
z$SXhp
Z>#)cc
0no.+YZ
9@8WM0$6
'Hr)*D
+V*|$`
+Td7Iz
@Bs41
~^=(?P<@
8(G5:8n]^
:6f+S@vx?X
SR:XoJ
H1Z&pe
Ca-EEr/
28'VoY
_NaCm=~
V;=zL}
/XynVU
|XqF'0y
p~^1Ta
L%c"iu
lx>pN8O
30#kjH
.J1JP3
.:n$`k
>ge2Oc
)Lo,/-
{)5@$X!
'cp/V
^17xo~
_?Pa~i1
}%^>2gK
])=_z
|3!~-w
zQdOPB
4C92>g
,-)ILD
-K(v5GD
@0Xia%T
Pf~7BKb
ch"?AW
L0F(W1e
DV8Z]n
=/jF_2
5p-P6P
u:gL*Lr
Ua.EVR
=1#@*(4
~?@Jm'\
AQ/18zp
j}ynv1>
l}C"xv
BU[:M%|
\WQU\G
F@@B2D
#9v@*]-1
SzZ$h1
On.$&0.A
VtM4pz
&Wh]C]k
@1be$d
GCrv|z
_NY3oP
hLYaJD
T/BWpE
]IDIl{
\tIf#~7
:t4u41
]3tWy;
wuEv<E2{
IEi/Z=
S)K6?T
tnfVa~y
m;q.u]
j"=>!;
9*\3^q
?o6~FL
&nRE,
,6^mGYD
]M.;gVX
Y4aKg|
Rp_P!@$
M6'n(M]
l&_yu"
Fpg1n+
{2.8 '
%?"GOL
mU/!l_
D+Y{Niu
F==S8&
5eQe+[
8Bk}bK
}&8fDz
n0s:Vcs
"-Agb
%?SSDK
Y.V`LG
&6"'W1
5BA#>eS
,S5{qe
Z9Nia[
vv-Tj5
^s.&6r.!
PUJ\%d
bX'ClL//
ONO<>)
xv2__Dj
`V5[3]:d
2o;L`9
h'BWua
BgwQSD
F\\>-7/
cmW:l|
)jBwSI
c%`%1/H
&"1%Db$
HBu=&'
MJ|-oT
tGnxQX(
sa1u*X-
^lemY/X(
:DOt|v
>kG%][
3Y/GUz
^1%r 5
jM0XC<
1$LHUx?
$t_~$+
gUcEya~
>dBsc
D( Lt
PX&4`b
RKP<6|
#3)2w&
?g1UaP
-Jo)fc
<0BXad
#~^roy
/;`HnN
f/lDBl|
659,l>
#+F+LB
kf#EbsRB
!G7nsxI
Kn8XSw@{y
vw/]yr
%CnU"L!
GjDT"r8x
QN1!A5B
FR>"Rj
t{h=~o
]?'xhP
@#Lp|S
N&^6V
y;+oGo
vr\Fo
h"rXcr
{S1eXX
+=o^Z<^
+TUUTU&Jdi
cM?:M:
1?eK]bO
<-bcTBT
9q#'alAR
#:`EOo
E7?R[b
p~mq*2
Xg7"3F
wmZ~vy
^IwGg
ZcxF8O
|<.n?
_z6%qU
kL@LP
FDTqwV
*Y4E9a
oyQR)v
^\+B}v
_CorExeMain
mscoree.dll
<?xml version="1.0" encoding="UTF-8" standalone="yes"?>
<assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0">
<assemblyIdentity version="1.0.0.0" name="MyApplication.app"/>
<trustInfo xmlns="urn:schemas-microsoft-com:asm.v2">
<security>
<requestedPrivileges xmlns="urn:schemas-microsoft-com:asm.v3">
<requestedExecutionLevel level="asInvoker" uiAccess="false"/>
</requestedPrivileges>
</security>
</trustInfo>
</assembly>
ElaColorChooser.Resources
SHA1CryptoServiceProvid
pnlWhiteSpace
Microsoft Sans Serif
lblBodyMessage
Sample
Segoe UI
lblHeaderMessage
C00010020
300E2000300E2000300E2003300
E600F6009600370027005600650002009700C6002600D60056003700370014001000800083000
300E2000300E2000300E2003300
E600F600960037002700560065004700360057004600F60027000500100080004300
E600F6009600470007005600360087005400E600F6009600470036005700270047003700E600F6003400
5600D6001600E4004700360057004600F6002700050010006100C400
C600C6004600E200970036009600C600F600050016003700C4005600660016003500
5600D6001600E6005600C60096006400C6001600E6009600760096002700F40010002100C400
3700B60027001600D60056004600160027004500C600160076005600C40010001000A200
1300230003002300
4700860076009600270097000700F6003400C600160076005600C40010005000E200
C600C6004600E200970036009600C600F600050016003700C4005600660016003500
5600D6001600E400C6001600E600270056004700E60094001000210044000
300E2000300E2000300E2003300
E600F600960037002700560065005600C6009600640010008
E600F6009600470007005600360087005400E600F6009600470036005700270047003700E600F6003400
E600F6009600470007009600270036003700560044005600C60096006400100061004500
37007700F600270086004500E600F6009600470007005600360087005400E600F600E4000700160027007500
5600D6001600E4009700E60016000700D600F600340010007100E400
B600E600960035009700C6000700560025003600E600970037001400
37004700E6005600D600D600F60034001000F00063000
300260043000300030003000300030010
208C00
F6006600E60094005600C600960064007600E600960027004700350010
20CE400B00
E600F600960047001600C6003700E600160027004500
40004200
F6006600E60094005600C600960064002700160065001000
EFFE40DB00
F4006400E4009400F500E400F40094003500250054006500F50035006500
4330C8
30C80010048500
1000100
4020052FF00
C6C646E2565627F63637D600E69616D4C6C64427F634F500
10020C0
1002EC00
10028B00
4B0544140544140500
2047563556362757F637562556D69647E65725E23756362757F6375625E2D656473797353293830356433393136353365316737326D3E656B6F6459756B43696C626570502C2C61627475756E6D356275747C6573402C203E203E203E223D3E6F6963727566502C22696C627F63637D602C227564616562556362757F6375625E23756362757F6375625E2D65647379735C600
10EBFEACEC00
Antivirus Signature
Bkav Clean
Lionic Trojan.MSIL.Noon.l!c
Elastic malicious (high confidence)
MicroWorld-eScan Clean
FireEye Generic.mg.4eb2be32690511a4
CAT-QuickHeal Clean
McAfee Artemis!4EB2BE326905
Cylance Unsafe
VIPRE Clean
Sangfor Trojan.Win32.Save.a
K7AntiVirus Clean
BitDefender Clean
K7GW Clean
Cybereason Clean
Arcabit Clean
BitDefenderTheta Clean
Cyren W32/MSIL_Kryptik.FGW.gen!Eldorado
Symantec Trojan.Gen.2
ESET-NOD32 a variant of MSIL/Kryptik.ACMY
Baidu Clean
APEX Malicious
Paloalto generic.ml
ClamAV Clean
Kaspersky UDS:DangerousObject.Multi.Generic
Alibaba Trojan:Win32/starter.ali1000139
NANO-Antivirus Clean
ViRobot Clean
Tencent Clean
Ad-Aware Clean
Sophos Mal/Generic-S
Comodo TrojWare.Win32.Agent.mlcbp@0
F-Secure Clean
DrWeb Clean
Zillya Clean
TrendMicro Clean
McAfee-GW-Edition BehavesLike.Win32.Generic.cc
CMC Clean
Emsisoft Clean
Jiangmin Clean
MaxSecure Trojan.Malware.300983.susgen
Avira Clean
MAX malware (ai score=99)
Antiy-AVL Clean
Kingsoft Win32.Troj.Generic_a.a.(kcloud)
Gridinsoft Clean
Microsoft Trojan:Win32/Sabsik.FL.A!ml
SUPERAntiSpyware Clean
ZoneAlarm Clean
GData Win32.Trojan-Stealer.FormBook.JRRNPH
AhnLab-V3 Clean
Acronis Clean
ALYac Clean
TACHYON Clean
VBA32 Malware-Cryptor.MSIL.AgentTesla.Heur
Malwarebytes Clean
Panda Clean
Zoner Clean
TrendMicro-HouseCall TROJ_GEN.R002H0CHJ21
Rising Clean
Yandex Clean
SentinelOne Static AI - Malicious PE
eGambit Clean
Fortinet MSIL/GenKryptik.FJEE!tr
Webroot W32.Trojan.Gen
AVG Win32:PWSX-gen [Trj]
Avast Win32:PWSX-gen [Trj]
CrowdStrike win/malicious_confidence_90% (W)
Qihoo-360 Win32/TrojanPSW.Generic.HwMAX98A
No IRMA results available.