Static | ZeroBOX

PE Compile Time

2021-10-19 18:50:10

PE Imphash

f34d5f2d4577ed6d9ceec516c1f5a744

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00002000 0x00062cd0 0x00062e00 7.90910259103
.rsrc 0x00066000 0x0000061c 0x00000800 3.45078312814
.reloc 0x00068000 0x0000000c 0x00000200 0.101910425663

Resources

Name Offset Size Language Sub-language File type
RT_VERSION 0x00066090 0x0000038c LANG_NEUTRAL SUBLANG_NEUTRAL PGP symmetric key encrypted data - Plaintext or unencrypted data
RT_MANIFEST 0x0006642c 0x000001ea LANG_NEUTRAL SUBLANG_NEUTRAL XML 1.0 document, UTF-8 Unicode (with BOM) text, with CRLF line terminators

Imports

Library mscoree.dll:
0x402000 _CorExeMain

!This program cannot be run in DOS mode.
`.rsrc
@.reloc
v4.0.30319
#Strings
user32
<stopServerMenuItem_Click>b__10_0
<>9__11_0
<showLogMenuItem_Click>b__11_0
<>c__DisplayClass18_0
<startNginxService>b__0
<>9__18_1
<startNginxService>b__18_1
List`1
label1
toolStripSeparator1
pictureBox1
kernel32
ToWin32
user32
label2
toolStripSeparator2
label3
toolStripSeparator3
toolStripSeparator4
ProgramFilesx86
get_UTF8
<Module>
LWA_ALPHA
CreateCompatibleDC
ReleaseDC
DeleteDC
GetWindowDC
WH_CALLWNDPROC
FRAMECHANGED
WS_EX_LAYERED
threadID
SRCAND
WH_KEYBOARD
WH_JOURNALRECORD
WH_GETMESSAGE
WH_FOREGROUNDIDLE
get_LogFILE
set_LogFILE
GWL_EXSTYLE
GWL_STYLE
DRAWFRAME
WH_HARDWARE
NOTSRCERASE
DEFERERASE
WH_MOUSE
NOACTIVATE
MOUSEEVENTF_ABSOLUTE
NOMOVE
NOSIZE
NOSENDCHANGING
WH_DEBUG
WinAPI
WH_JOURNALPLAYBACK
WH_SHELL
MONITOR_DEFAULTTONULL
WH_KEYBOARD_LL
WH_MOUSE_LL
BOTTOM
NOREPOSITION
MOUSEEVENTF_LEFTDOWN
MONITORINFO
System.IO
MOUSEEVENTF_LEFTUP
NOZORDER
NOOWNERZORDER
WH_SYSMSGFILTER
ASYNCWINDOWPOS
WHITENESS
BLACKNESS
NOCOPYBITS
WH_CBT
WH_CALLWNDPROCRET
CAPTUREBLT
WS_EX_TRANSPARENT
SRCPAINT
MERGEPAINT
PATPAINT
SRCINVERT
PATINVERT
DSTINVERT
BROADCAST
MONITOR_DEFAULTTONEAREST
NOTOPMOST
NOREDRAW
HIDEWINDOW
SHOWWINDOW
NOTSRCCOPY
MERGECOPY
PATCOPY
MONITOR_DEFAULTTOPRIMARY
MONITORINFOF_PRIMARY
value__
bAlpha
System.Data
dwData
mscorlib
ReleaseHdc
GetHdc
System.Collections.Generic
lpEnumFunc
HookProc
EnumWindowsProc
EnumWindowProc
bottom_count_proc
option_countproc
hdcSrc
GetWindowThreadProcessId
lpdwProcessId
bgThread
add_Load
MainForm_Load
fMain_Load
add_Changed
add_CheckedChanged
option_logfile_CheckedChanged
option_recursive_CheckedChanged
option_scroll_CheckedChanged
bottom_show_options_CheckedChanged
add_DocumentTitleChanged
watcher_changed
get_Checked
set_Checked
set_Enabled
set_FormattingEnabled
set_WebBrowserShortcutsEnabled
set_IsWebBrowserContextMenuEnabled
add_Renamed
watcher_renamed
set_ScriptErrorsSuppressed
add_Created
watcher_created
isPasswordProtected
get_passwordProtected
set_passwordProtected
add_Deleted
watcher_deleted
IsFaulted
Synchronized
get_Pid
GetWndPid
<passwordProtected>k__BackingField
<password>k__BackingField
<username>k__BackingField
<messages>k__BackingField
<userAddress>k__BackingField
ReadToEnd
m_hWnd
GetIsWnd
dosCommand
command
Append
UriKind
get_Second
get_XmlNamespaceEncod
method
get__count_mod
set__count_mod
bottom_count_mod
getPassword
setPassword
get_password
set_password
startNginxService
CreateInstance
hInstance
defaultInstance
hObjectSource
set_AutoScaleMode
FileMode
set_InitialImage
FromImage
get_Message
InvokeMessage
AddRange
Change
EndInvoke
BeginInvoke
get_Table
DataTable
SetPenetrable
IDisposable
get_Visible
set_Visible
GetWndVisible
IsWindowVisible
m_visible
Double
get_Handle
wndHandle
RuntimeTypeHandle
GetTypeFromHandle
handle
Rectangle
Single
ReadFile
CreateFile
DeleteFile
ExeFile
LogFile
CaptureScreenToFile
CaptureWindowToFile
CopyFile
option_logfile
get_Profile
Console
DockStyle
set_DropDownStyle
set_GripStyle
ToolStripGripStyle
set_BorderStyle
FontStyle
ComboBoxStyle
get_Name
set_Name
set_FileName
get_MachineName
get_UserName
GetClsName
m_clsName
get_ClassName
lpClassName
GetClassName
get_ProcessName
Rename
filename
getUsername
setUsername
get_username
set_username
DateTime
WriteLine
get_NewLine
get_ChangeType
ValueType
HookType
GetType
get_PropertyType
WinAPI_Core
get_Culture
set_Culture
resourceCulture
ScreenCapture
InternalDataCollectionBase
ButtonBase
ApplicationSettingsBase
Dispose
Create
get__count_create
set__count_create
bottom_count_create
MulticastDelegate
DebuggerBrowsableState
EditorBrowsableState
set_CheckState
Delete
STAThreadAttribute
CompilerGeneratedAttribute
GuidAttribute
GeneratedCodeAttribute
DebuggerNonUserCodeAttribute
DebuggableAttribute
DebuggerBrowsableAttribute
EditorBrowsableAttribute
ComVisibleAttribute
AssemblyTitleAttribute
AssemblyTrademarkAttribute
TargetFrameworkAttribute
AssemblyFileVersionAttribute
AssemblyConfigurationAttribute
AssemblyDescriptionAttribute
CompilationRelaxationsAttribute
AssemblyProductAttribute
AssemblyCopyrightAttribute
AssemblyCompanyAttribute
RuntimeCompatibilityAttribute
set_UseShellExecute
get_Minute
GetValue
SetValue
GetPropertyValue
SetPropertyValue
get_IsAlive
option_recursive
OpenrestyTool.Native
IEnumConnectionPoin.exe
set_Size
set_MinimumSize
set_AutoSize
set_ClientSize
ISupportInitialize
MouseEventFlag
System.Threading
Encoding
System.Drawing.Imaging
System.Runtime.Versioning
WritePrivateProfileString
GetPrivateProfileString
ToString
lpString
GetString
disposing
System.Drawing
dwNewLong
GetWindowLong
SetWindowLong
watcherLog
NewLog
ShowDialog
ComputeHash
get_Path
set_Path
get_luaPath
filePath
get_exePath
get_confPath
get_logPath
iniPath
get_FullPath
get_StartupPath
surPath
desPath
GetFileNameByPath
GetDirectoryByPath
get_Width
nWidth
get_Length
GetWindowTextLength
get_Month
surObj
desObj
AsyncCallback
ReplacementFallback
callback
add_Tick
bgTick
add_Click
clearLogMenuItem_Click
showLogMenuItem_Click
configServerMenuItem_Click
stopServerMenuItem_Click
startServerMenuItem_Click
lusMenuItem_Click
exitMenuItem_Click
restartMenuItem_Click
aboutMenuItem_Click
set_Dock
TickTock
retVal
get__count_global
set__count_global
set_Interval
ToolStripStatusLabel
get__count_del
set__count_del
bottom_count_del
System.ComponentModel
_optionPanel
GetPixel
FileIOUtil
IniUtil
CommUtil
gdi32.dll
user32.dll
option_scroll
OpenrestyTool
ContainerControl
ListControl
set_Url
FileStream
lParam
wParam
Program
get_Item
ToolStripItem
clearLogMenuItem
showLogMenuItem
LuaToolStripMenuItem
configServerMenuItem
stopServerMenuItem
startServerMenuItem
exitMenuItem
restartMenuItem
aboutMenuItem
OperatingSystem
HashAlgorithm
Bottom
MainForm
AboutForm
aboutForm
resourceMan
Boolean
CaptureScreen
get__count_ren
set__count_ren
bottom_count_ren
set_CheckAlign
IEnumConnectionPoin
DataColumn
get_Icon
MessageBoxIcon
NotifyIcon
notifyIcon
get_OSVersion
Application
set_Location
set_AllowNavigation
System.Configuration
System.Globalization
action
Section
System.Reflection
ControlCollection
ToolStripItemCollection
DataColumnCollection
ObjectCollection
section
set_StartPosition
FormStartPosition
Exception
set_HelpButton
warrning_ico
error_ico
dwExtraInfo
FileInfo
CultureInfo
FileSystemInfo
MemberInfo
GetMonitorInfo
set_StartInfo
ProcessStartInfo
WindowInfo
DirectoryInfo
PropertyInfo
CreateCompatibleBitmap
FromHbitmap
get_sep
ToolStrip
StatusStrip
mainMenuStrip
set_ContextMenuStrip
TimeStamp
set_AllowWebBrowserDrop
set_TabStop
bottomBar
set_ShowInTaskbar
get_Year
StreamReader
TextReader
MD5CryptoServiceProvider
StringBuilder
sender
buffer
get_ResourceManager
TheWatcher
FileSystemWatcher
EventDispatcher
RenamedEventHandler
FileSystemEventHandler
ErrorEventHandler
System.CodeDom.Compiler
IContainer
StructuralComparer
WebBrowser
parameter
hwndChildAfter
HWNDInsertAfter
hWndInsertAfter
LogWriter
StreamWriter
TextWriter
set_Filter
get_ScanFileFilter
set_ScanFileFilter
scanFileFilter
get_WorkingDir
workingDir
get_WatchDir
set_WatchDir
watchDir
UserDir
option_watchdir
set_Anchor
set_UseVisualStyleBackColor
add_Error
ColorTranslator
ToolStripSeparator
IEnumerator
GetEnumerator
Activator
.cctor
hMonitor
IntPtr
Bytes2Str
get_Hour
Graphics
System.Diagnostics
m_hWnds
get_hWnds
seconds
System.Runtime.InteropServices
System.Runtime.CompilerServices
receivedSequences
System.Resources
OpenrestyTool.MainForm.resources
OpenrestyTool.AboutForm.resources
OpenrestyTool.fMain.resources
OpenrestyTool.Properties.Resources.resources
DebuggingModes
get_messages
set_messages
GetDirectories
set_IncludeSubdirectories
OpenrestyTool.Properties
GetProperties
ProgramFiles
GetFiles
EnableVisualStyles
AnchorStyles
WatcherChangeTypes
GetTypes
GetProcesses
get_Attributes
FileAttributes
SetLayeredWindowAttributes
Str2Bytes
GetBytes
nFlags
uFlags
dwFlags
Settings
RenamedEventArgs
FileSystemEventArgs
ErrorEventArgs
<>4__this
Equals
set_CheckForIllegalCrossThreadCalls
get_Controls
get_Items
System.Windows.Forms
get_Columns
set_AutoScaleDimensions
TernaryRasterOperations
Actions
System.Collections
bottom_show_options
MessageBoxButtons
GetCursorPos
SetCursorPos
SetWindowPos
GetFileInfos
OptVars
LoadClass
lpszClass
FileAccess
KillProcess
IPAddress
get_userAddress
set_userAddress
set_Arguments
components
set_EnableRaisingEvents
get_Exists
FileExists
EnumChildWindows
EnumWindows
Concat
ImageFormat
PixelFormat
format
GetWndRect
m_wndRect
lpRect
get_WindowRect
GetWindowRect
LoadObject
CloneObject
DeleteObject
hObject
SelectObject
GetObject
object
System.Net
offset
get_Height
nHeight
op_Implicit
EndInit
BeginInit
GraphicsUnit
WaitForExit
hdcBlt
BitBlt
get_Default
SetCompatibleTextRenderingDefault
IAsyncResult
DialogResult
result
ContentAlignment
Environment
get_Document
HtmlDocument
InitializeComponent
hwndParent
get_Current
content
mouse_event
lpPoint
set_Font
UpdProcessCount
nMaxCount
ThreadStart
nXDest
nYDest
CheckProcessExist
set_TopMost
SuspendLayout
ResumeLayout
PerformLayout
set_RedirectStandardInput
get_StandardOutput
set_RedirectStandardOutput
MoveNext
System.Text
set_Text
GetWndText
m_wndText
get_WindowText
GetWindowText
scroll_window_ev
ReadFileRaw
get_Now
DataRow
CaptureWindow
MonitorFromWindow
set_CreateNoWindow
GetDesktopWindow
get_IsWindow
PrintWindow
lpszWindow
m_window
watcher_buffer_overflow
UnhookWindowsHookEx
SetWindowsHookEx
CallNextHookEx
FindWindowEx
set_TabIndex
get_SelectedIndex
set_SelectedIndex
nIndex
MessageBox
PictureBox
set_MinimizeBox
set_MaximizeBox
CheckBox
ComboBox
get_Day
System.Security.Cryptography
get_Assembly
GetSubDirectory
CreateDirectory
get_CurrentDirectory
AddEntry
get_Capacity
op_Equality
op_Inequality
GetProperty
property
HQsQ\P
RsQ\P!
RsQ\P!
WrapNonExceptionThrows
Openresty Tool
Microsoft
"Copyright
Microsoft 2016 - 2021
$f6a5e5f4-5990-432b-adff-1c53fb602c1f
1.0.0.0
.NETFramework,Version=v4.0
FrameworkDisplayName
.NET Framework 4
3System.Resources.Tools.StronglyTypedResourceBuilder
16.0.0.0
KMicrosoft.VisualStudio.Editors.SettingsDesigner.SettingsSingleFileGenerator
16.7.0.0
lSystem.Resources.ResourceReader, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089#System.Resources.RuntimeResourceSet
PADPADP
lSystem.Resources.ResourceReader, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089#System.Resources.RuntimeResourceSet
PADPADP
lSystem.Resources.ResourceReader, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089#System.Resources.RuntimeResourceSet
PADPADP
lSystem.Resources.ResourceReader, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089#System.Resources.RuntimeResourceSet
hSystem.Drawing.Bitmap, System.Drawing, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3aPADPAD
QSystem.Drawing, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a
System.Drawing.Bitmap
IDATx^
6P[;u<
T>;}/?
.=Ni?7
qRij7'^
C.xdks
xfCmDtx
&/?CoM}
,?x<+G|
||FH/asX
D_Zl#T
Y>v;c/
S^'<\ua
_k>s=g
oI/>wr
/&T~{|
y7|}7s*k N
ONxz?J
JW?tJw
!::KO=H
(-|dKC^
OW~9}~
7ZrNi'
r,.[%o
<P<9'(
gt@\6f
f_F&~rg?
QSystem.Drawing, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a
System.Drawing.Bitmap
IDATx^\
2]3;Ll
t?n<OY)
M"OMH5
ks;#An
@0z,z\<
#1r%r=ek
|9yk_S
#aTepb|LJ
Y6qSzo
p~BA:2
$\S0zc
ADyy9T
e>"'TJy
<MAoHep
V"^?Tt
^}/?.!;=fgJN
Jln8&1I
"M^sXzz
SIBPd?
'|G&-T
pvD=E|c
ohXRO~
obJkQ3
y}'rb]
xS&R-
dD+|Rzh
S)J'++
vMnJ|@x
sn&A4*rvCw
&(P,\D
+aL?sN=-X)A
us}G{}Q*7J
MW8f`n
o0[4-e
2[C#*"
:CLgDDGO3
'9;=jb
*|.x%pLh
wJj=B|
<Ej=|P
w22>+Mk
~=zKPz
1;C6J>
bwtl!l
yp,V^Wd
'W+VDw
Aa$<6
(pK>)M
DwSM&o
^B'BowkiBX
7 a\0Jn! k
1{+u+y
,9L2AF
dbdS)@
43)N|P
G"8'[I
j={$;_
5U<0'b
k6*H<}
_>X~uB*
=ALzhe
1[~A7rm\
>PM ~`
u\.MB
Cc{oNW
Y"bd5}
z$?)vv
]^4F/Z
~_Hxr4E.
Ry.ouj
s"czwFC
*I"A.a
G+k%G(+ u
tP6-iz
elj#n^8
(x_R~n9
/Q(TT#
FBmQT&
|uK'Mj<
~fC.@$
fypY45
2Gju>J?8
x9'_lXV
,[x,<?
%[c!.*
ky<6'>D
du~:V`R
kzYY=2mK
#ekk_
>S>!jn?q
R~yiW~
cl%%i*
@23"Rw
]H{%PE~P
QM2Z.mF
2-Z=z;*
1L\L\U
H+[Dk*
D#*)(&y
nP:0)S
q3oLyeH
&uY]i%G
KU6h/1
;/E%J+
3|Ha.e
!/Bk}$
Tcv0:[
miIg@x6RQ
{dT5*(L
TCRf~FrU
x(#=#M
j6L>Y\
aC\O&t
)wLX}"
A^gnih
SLTy,pX
cZfn7c
8uVJ}l
p^itWh
IiPxAJh%)
8W-;qh
i}W?th
CQjh>'
Z''G<k
j5\#=-wQ
<jt"Lu3
fg!Ck{
:xEwSU
w%0=oG
nocWuPJ
#:~4lI
{zOtj,
p aOG@
vL<jyd
L`TEJM
%dB=,P
yFX;QI
1CcY8q
+L}C:SD
|az)6ZQ
P:<3gP
WGX25S
*`$DzN
Y^Qhis
&ZwqxVI
2m-q';z
,Xel"n
.Z>WU9u
pK_']q/
r*gVN&
j uj[@
?y5HI7
pB5&(j1
@~WJ0`9
5^hHx?
M~D=8*L
CbdzFAxO
[67NKq/`
pA}SS*
beFO/s(
A*ySg{
bSOv>zT
N7f]g^`
=o\a"DV|l
90"F mh
>>Qs9+K
))3[,qV8
8~8 .Q
[XXe\~
Zf,]N%
3(eU}#
y'su2c
$n?lS5h
1/<wL1in
DLlYWS75
K=IaY?
ePe?(M(
sh<PQ>
~./{*9
?S#aT/
F9L<5[
}^cKD5
N)%p{
0PqDxa
^Q{S1c
w.|uE\
kZ!7u<
sQx`P0
Gq7E$s
E%"f.)%
D-ZbM
6=#&M,O
Fhy)DJ
?Jx4nBw
2[%M[#
Bf9'~0
0&"H(0
ufLK3>
g~MOA=
prf^sp:X*
'jJKg"ZU
o6pODE{Y
b+ysZAg
?.3d0
dJ*)'v
X0..#n
ZD6"`q
26NMSAWui`
,kFxM
<+DDXx
v/BN,>n
E/MZkTD
'StA9I
?Iy@gA
v00:"HHwY
h lXA"
2Or?DY
0WibFN/<J]
O]dC!v4
k5DJ}$qOrVw
T=Rqs5
"BEsmP
sA__Jy
~q+C(
}N0nI]
U]YHN:
6y/ :D
I(&gh(
Qy1<{C
[_2xxx
Y/a@|^
ZJ]81V
R>vm ZK2
p gv=":
IDAT"n;
^E~7{i+
bm?frN_
WMZ~_8b
Z0(zJw
JgB,V#
y"]LI
R9nR1z
kBB@7D
AePX+.
/C8h(
1#j]'R
}Bv6ZK
S!Zgw,k
'h=$$]
)M.FL>
P4m.N$
IC^D2
<d,Koke
v-}q2B
Z78Sa@
AfIiaDK
W{^ezz
IE'?+C
AbS-@j
:_qJ>(
qRkz/]9@
;mDFtG
/MXnV.Y
oa+UT&
)uxDi:)`
8hX~c9
29QCW=Dm@
4nFcOb
`-7n\b
7>?HvCZ
"QB&3!
>p2~f%
$Tn6^0
Zdyg48
8Q<oWP
_iz_H2>
$h#XL@D(
>C0fZ#R
}Eh]G:Z
{1+J->?EG
78?(Nv5
_f|#}3
KZ>t?u
^IE>go
]%(BoY
aw6WwO
~.'>2&
32N1Sw
dwd4d}s
OB<&Hd
HW;gua
)f0'!+
Q_MB=t
#=.SX)
m`{_qAO
w61SC!
TI/W0o%
&c's!3
WVpr4Jt
!a=+_V-
8R[(5gffKsS
~9PXp`
o7PI3D)LX
srz"<v
g[R_XB
{PW)UW
>RJAk9Mpu
3]d9eG
`ahpiI
+mKt|4_5
bo@N&(N
>L]xq-
~Rs".L
SSn]`^Co
W`*++ u*0
GQ2<30
luDbnx
8N#?|%
,fBiTn
9N\oNeE
+4z<Cz
{/9]RK
Twibt}.
S2_gYbh
kLi$oT#
%}HZ5#
i57vQ:
Yin4;wL>+
dmw[c
(KuxS'
\LDP_N
:Bx<a&
_E[\O\
jzS *x
71rL9![5sB
X4).qU?9
eFI31H
#o0e}L
KF^)S=
.x,>ur
:[;^!K]
uZWy%:ri
>hz;ow
IDAT9:r
Ov;5[5
BpY{VR
k@g@`s
b-G~Tm
ZV&"0zb
.#B7VM+730
k.fMLo$%
cv!rFo
t%4zxV
Yr8X R
Uj3WgG
*?L32L
!!R^Fb>
:_7Z2i
pQ.Ti|
y($iv<-
7|aRR:aY
lzyr4}
eEg)#92
^<SZ)n@
]u/6a%
zp~rcv
Scj1_i
6'jS+L
7oc_>V
otwhfx
o3jt>4^+
4*la(n
1DnWjace
0sO 5WAy
l"i>,bDAy
MTpL*w
(%xgK[
p_XY5
m6HR&h
WLGzn)
PJ/JeB11S-~
7|@*'Y
(\5}rD
;Xh-7
K;7Wx]
.SG4^E
O'CKDJi5
2=C^#y
9{E@zW
$T:c1q4
ZpN]!1
{s5?O\
15m[{&
'@ N|z*
e7}`LE:
z?]C:m
P_5Z["p
(KBHXC
P H&`>
ZiiFld
&gw,/3
LmWm^Xd
%~b},Z_v
6s?o51[a
B><OTQ
/hL$Ftc
<,]S(~.
M]C.uP
Km78Dn
MrV$@[`
@zH[`m}
L[IZRhU
g5i{'RC
$/|SaY-;
XQ&Lt[
l(e]~R
S5>:4
vyrjiH
QZ[Tk~"5ZYx
U(qr7[
=4d37$
#;4uh\:
WaPJ:F`
?F!|4p5
D2,ak!
CIJ*"[=
O<=(]o
btoc]O,
N.0p%oQJ-B
e]KJfgH
.X'|A}rd
DgZ9KQ
V=HS='
o|Vz)zC@<
/P(.,!Y
<z\[m;Y[
;nW^kq
$oq.,F]
Eyt|'
f[0<oW
*9.N[K6ea
$gv4~ =
Hv(mt~
=@+le<|
Nac$<o
>{t+:Ok{
L0F&KW
!*tz*,`
<9bq3;Uu
%Kk3FL
7)2"6`
(:N<H%
]c"S<`
%,i yA
Z51ouX)7
G^wc|O
h3j7w$A
2tyI9I
5}<q6l
{}^aji
XO[jQ{9
^PgogQq
\w[57tJ
7u3zc>
F85M~a
}n\vv]
h_H<7:
y.aONl
>qA.<5
x]3]:]
w-wtpk
Um-xO{,
lz)&OZ
7Vm*Op
r3>NIZcNI
-_Eio5ntM\C
o;(gOR
(zA]A:
OhIXwF
zu4#W]
;sM:L^
6"x$[\
x`1{np
7P6Yg"`
!Y7Vj@<V
Tx;"S/
I47+l]
{F\[<9$
{}A>+?<q
C)U5ZZb
X!6!job
/^3?jr
)+h!:~7
hJ%V*0{
;GHn:>F
#,:7q\
Wk$BHMF/
zPsfm6
CfOC#L&
%age3Z
#xX2?"
}-vORV
bdlZA1
y8{.TQ
Ez*1)i
Ngd)|+
U7R?ui8=
jH;U#w
PVJ($Q
8EsCAYej
Y[J,k*
/hOwj[
d4iHj;
2* <qh0
ablCLI
*q75SK
60($}9
DUn^6M
D8cPRW
LX*IOkj#
d3S_#+
Q4eT+zj}
_'"|OH
]ftif>#0/
]mp}t1
\{q,yt!
;z.,<7Z[
kOK??V
v7={zyN'g
A/^wpqMJ2
A>YcH]
AFDn^
%|?cPU
;*\+&X|
Ww?'Oa
HBMHKh
Pl_ABs|
z-HXi/
`Wx,e\\
op[.4?
c(encX
>@"Q_B
a(fp1"
4.,.Yj
{-qlfBS3
z*7N5*MJ
@jAWt~
js;G@wiU.
h^En]l
TOai2j
Tzuax,
.(bi)$
y^a{K~
mY[/J
3!'Lj6
^7oqW>
PYxHd\
us_1MA3"Sb
@=ZY,C
;W2XI8
+DY7/0
m-zI|K
TRT_vL(
KDOE#:PT
W=}4nC
gT%OV^-
P(}xAY
'r0|T;
H.s)<1
.55|OxU
N(N!4%H
@bLOAF
21AC^$
sF>KGn
GZ dr2
]&7}+q
gXpuh`
'R&Tn4
Mzwj]o_'/nU
(d<=Oa
'#Zk(uB
pYv)aB
aG]5U
8W\x]);
JFE?UU29
Z<|H&<\
CxUoGT
R<q"6G
=Z,6GD
<-e*6A*z
ZK*Pxj
:P:(Ej
%4*"Y1
{TEk*F
8?'*LM
QC--C&
_CorExeMain
mscoree.dll
<?xml version="1.0" encoding="UTF-8" standalone="yes"?>
<assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0">
<assemblyIdentity version="1.0.0.0" name="MyApplication.app"/>
<trustInfo xmlns="urn:schemas-microsoft-com:asm.v2">
<security>
<requestedPrivileges xmlns="urn:schemas-microsoft-com:asm.v3">
<requestedExecutionLevel level="asInvoker" uiAccess="false"/>
</requestedPrivileges>
</security>
</trustInfo>
</assembly>
pictureBox1
Microsoft YaHei
label1
Version 0.8.0.8
label2
Openresty Tool for win
label3
kenkao_01@126.com
AboutForm
- Openresty Tool
586D6C4E616D657370616365456E636F64
666A6A
data:image/png;base64,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
data:image/png;base64,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
<script>s();</script>
WinWatcher - {0} changes in {1} [recursive:{2}]
ERROR: Buffer Overflow !
Restart application and try again.
ERROR: Buffer Overflow!
Files created: {0}.
Files deleted: {0}.
File modifications: {0}.
Files reanmed: {0} times.
deleted
{0} was deleted (exist:{1})
was renamed
renamed
<img src="
" align=absmiddle /> ERROR BO!
{0} was created < size={1} kilobytes; attributes={2} >
was created | Ex:
created
was changed
changed
[unknown]
ERROR ex:
<script>function s(){window.scrollTo(0,document.body.scrollHeight);}</script><pre style="font-size:11px">
watcherLog
about:blank
bottomBar
bottom_count_create
bottom_count_mod
bottom_count_del
bottom_count_ren
bottom_count_proc
OpenrestyTool
_optionPanel
option_logfile
Write also in logfile (saved in exe working directory)
option_scroll
Log window auto scrolling
option_countproc
Monitor running processes count
option_recursive
include subdirectories
Windows directory
System directory
User directory
Program Files directory
Program Files x86 directory
option_watchdir
Directory to watch:
bottom_show_options
options
notifyIcon1
WinWatcher
log-{0}{1}{2}.{3}{4}{5}.log
{0} {1}
Log file created...{2}
{3} on {4}, {5}.{6}{7}{8}
Error creating log file.
{2}{0} - {1}
Error writing log file.
access.log
error.log
nginx -s quit
OpenrestyTool for win
mainMenuStrip
aboutMenuItem
toolStripSeparator1
startServerMenuItem
Nginx
stopServerMenuItem
Nginx
restartMenuItem
Nginx
toolStripSeparator4
LuaToolStripMenuItem
configServerMenuItem
toolStripSeparator2
showLogMenuItem
clearLogMenuItem
toolStripSeparator3
exitMenuItem
MainForm
Openresty
{0}-{1,2:00}-{2,2:00} {3,2:00}:{4,2:00}:{5,2:00}
----------------------------------------------------------------------------
cmd.exe
OpenrestyTool.Properties.Resources
Profile
XmlNamespaceEncod
start {0}bin_tools\baretail\baretail.exe {0}logs\access.log {0}logs\error.log
Profile
XmlNamespaceEncod
VS_VERSION_INFO
VarFileInfo
Translation
StringFileInfo
000004b0
Comments
CompanyName
Microsoft
FileDescription
Openresty Tool
FileVersion
1.0.0.0
InternalName
IEnumConnectionPoin.exe
LegalCopyright
Copyright
Microsoft 2016 - 2021
LegalTrademarks
OriginalFilename
IEnumConnectionPoin.exe
ProductName
Openresty Tool
ProductVersion
1.0.0.0
Assembly Version
1.0.0.0
Antivirus Signature
Bkav Clean
Lionic Trojan.MSIL.Androm.m!c
Elastic malicious (high confidence)
MicroWorld-eScan Trojan.GenericKD.47216859
FireEye Generic.mg.06de5d7a4d6459a9
CAT-QuickHeal Clean
McAfee PWS-FCZF!06DE5D7A4D64
Cylance Unsafe
Zillya Clean
Sangfor Trojan.Win32.Save.a
K7AntiVirus Trojan ( 005892b81 )
BitDefender Trojan.GenericKD.47216859
K7GW Trojan ( 005892b81 )
CrowdStrike win/malicious_confidence_100% (W)
Arcabit Clean
BitDefenderTheta Clean
Cyren W32/MSIL_Agent.CHI.gen!Eldorado
Symantec ML.Attribute.HighConfidence
ESET-NOD32 a variant of MSIL/Kryptik.ADFN
Baidu Clean
APEX Malicious
Paloalto generic.ml
ClamAV Clean
Kaspersky HEUR:Backdoor.MSIL.Androm.gen
Alibaba Trojan:Win32/starter.ali1000139
NANO-Antivirus Clean
ViRobot Clean
Rising Clean
Ad-Aware Trojan.GenericKD.47216859
TACHYON Clean
Sophos Mal/Generic-S
Comodo Clean
F-Secure Clean
DrWeb Trojan.Inject4.17729
VIPRE Clean
TrendMicro Clean
McAfee-GW-Edition BehavesLike.Win32.Fareit.fc
CMC Clean
Emsisoft Trojan.GenericKD.47216859 (B)
SentinelOne Static AI - Malicious PE
Jiangmin Clean
Webroot W32.Malware.Gen
Avira TR/Kryptik.ugcjs
Antiy-AVL Clean
Kingsoft Clean
Gridinsoft Clean
Microsoft Trojan:MSIL/AgentTesla.LCE!MTB
SUPERAntiSpyware Clean
ZoneAlarm HEUR:Backdoor.MSIL.Androm.gen
GData MSIL.Trojan.PSE.UBMCTS
Cynet Malicious (score: 100)
AhnLab-V3 Trojan/Win.Generic.C4712626
Acronis Clean
VBA32 Clean
ALYac Trojan.GenericKD.47216859
MAX malware (ai score=89)
Malwarebytes Trojan.MalPack.PNG.Generic
Panda Trj/GdSda.A
Zoner Clean
TrendMicro-HouseCall TROJ_GEN.R002H0DJJ21
Tencent Msil.Backdoor.Androm.Hfq
Yandex Clean
Ikarus Trojan.MSIL.Inject
MaxSecure Trojan.Malware.300983.susgen
Fortinet MSIL/GenKryptik.FMJE!tr
AVG Win32:PWSX-gen [Trj]
Cybereason malicious.c94dd4
Avast Win32:PWSX-gen [Trj]
No IRMA results available.