Static | ZeroBOX

PE Compile Time

2042-10-10 01:00:04

PE Imphash

f34d5f2d4577ed6d9ceec516c1f5a744

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00002000 0x00060fc4 0x00061000 3.73850421278
.rsrc 0x00064000 0x000002a4 0x00000400 2.18712833364
.reloc 0x00066000 0x0000000c 0x00000200 0.101910425663

Resources

Name Offset Size Language Sub-language File type
RT_VERSION 0x00064058 0x0000024c LANG_NEUTRAL SUBLANG_NEUTRAL data

Imports

Library mscoree.dll:
0x402000 _CorExeMain

!This program cannot be run in DOS mode.
`.rsrc
@.reloc
v4.0.30319
#Strings
Saeculums
Saeculums.exe
<Module>
Interpreter
Saeculums.Definitions
Object
System
mscorlib
Printer
Saeculums.Workers
<>c__DisplayClass2_0
ConfigurationFactoryFilter
Saeculums.Filter
PrinterAccountWriter
Saeculums.Writers
<>o__4
Saeculums.Shared
TemplateAnnotationWorker
<>o__5
ItemAccountWriter
ThreadAnnotationWorker
MerchantRequestDef
Invocation
MulticastDelegate
ConfigRegistryStructBuilder
Definition
StubAccountListener
MessageFactoryInstance
GlobalRegistryStructBuilder
StructRequestDef
RegistryAccountWriter
TokenRegistryStructBuilder
MethodReponseContainer
Identifier
Saeculums.Exceptions
ValueType
RequestAccountWriter
ServiceRegistryStructBuilder
Saeculums.Structs
Helper
Saeculums.Instances
ComparatorRegistryStructBuilder
AccountAccountWriter
Product
IssuerAnnotationWorker
CallbackRegistryStructBuilder
<PrivateImplementationDetails>
__StaticArrayInitTypeSize=379656
CloneInterpreter
String
EntryPointNotFoundException
FindInterpreter
CreateInterpreter
EnableInterpreter
Func`1
Boolean
IntPtr
Invoke
InvalidOleVariantTypeException
System.Runtime.InteropServices
m_Wrapper
CalcInterpreter
UInt64
UInt32
UInt16
op_Explicit
Marshal
SizeOf
Application
System.Windows.Forms
get_ExecutablePath
op_Inequality
Thread
System.Threading
ToInt64
GetTypeFromHandle
RuntimeTypeHandle
AllocHGlobal
FreeHGlobal
_Account
.cctor
AssetInterpreter
m_Registry
instance
Replace
RemoveInterpreter
PopInterpreter
Binder
Microsoft.CSharp.RuntimeBinder
Microsoft.CSharp
Convert
CallSiteBinder
System.Runtime.CompilerServices
System.Core
CSharpBinderFlags
CallSite`1
Func`3
CallSite
Create
Target
ToCharArray
InitInterpreter
get_Length
FromBase64CharArray
Encoding
System.Text
get_UTF8
GetString
VerifyInterpreter
annotation
DefineInterpreter
StringBuilder
get_Chars
ToChar
Append
ToString
RegisterInterpreter
GetInterpreter
RuntimeHelpers
InitializeArray
RuntimeFieldHandle
Exception
StartInterpreter
Action
config
SortInterpreter
ConnectInterpreter
m_Configuration
RunInterpreter
CountInterpreter
reference
CSharpArgumentInfo
CSharpArgumentInfoFlags
InvokeMember
IEnumerable`1
System.Collections.Generic
Func`4
lennahCSporetnI54200
Func`5
Func`6
GetMember
m_Dispatcher
_Property
m_Prototype
composer
m_Strategy
m_Service
comparator
_Config
m_Global
m_Creator
IncludeInterpreter
LoadLibrary
kernel32.dll
CustomizeInterpreter
FreeLibrary
VisitInterpreter
GetProcAddress
kernel32
reponse
PatchInterpreter
DestroyInterpreter
GetDelegateForFunctionPointer
Delegate
ReflectInterpreter
m_Serializer
hProcess
isWow64
BeginInvoke
IAsyncResult
AsyncCallback
callback
object
EndInvoke
result
lpBaseAddress
lrezilaireSnekoTytiruceSreePslennahCledoMecivreSmetsyS5542
lpNumberOfBytesWritten
visitor
exitCode
handle
hToken
lpApplicationName
lpCommandLine
lpProcessAttributes
lpThreadAttributes
bInheritHandles
dwCreationFlags
lpEnvironment
lpCurrentDirectory
lpStartupInfo
lpProcesleveLnoitalosInimdAMOCnoitargetnImoCledoMecivreSmetsyS78833
hNewToken
hThread
pContext
ProcessHandle
BaseAddress
ZeroBits
RegionSize
AllocationType
Protect
counter
nCmdShow
collection
m_Mapper
m_Producer
_Parameter
observer
parser
m_Setter
_Initializer
_Watcher
listener
writer
m_Attr
m_State
merchant
_Struct
m_Decorator
params
m_Template
thread
m_Issuer
m_Publisher
m_Queue
_Visitor
method
_Singleton
process
_Authentication
_Client
descriptor
m_Status
m_Bridge
_Advisor
m_Consumer
server
m_Mock
LogoutInterpreter
SetInterpreter
8C55DF705F2A9EF6D768F05BAEA3D748926D9DE9
CompilationRelaxationsAttribute
RuntimeCompatibilityAttribute
DebuggableAttribute
System.Diagnostics
DebuggingModes
TargetFrameworkAttribute
System.Runtime.Versioning
UnverifiableCodeAttribute
System.Security
ParamArrayAttribute
DynamicAttribute
ReliabilityContractAttribute
System.Runtime.ConstrainedExecution
Consistency
CompilerGeneratedAttribute
System.Security.Permissions.SecurityPermissionAttribute, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089
SkipVerification
WrapNonExceptionThrows
.NETFramework,Version=v4.0
FrameworkDisplayName
.NET Framework 4
_CorExeMain
mscoree.dll
MitUnoitcennoCslennahCledoMecivreSmetsyS926263YPOxEVAhE7AjsnHh46AA==
MitUnoitcennoCslennahCledoMecivreSmetsyS92626CoLKRE/IxcsPwoh
AitUnoitcennoCslennahCledoMecivreSmetsyS926263cTLiogBg4jMDgkHWsUCRtkDgMcNQQ9Oy81CwIVS0U=
BitUnoitcennoCslennahCledoMecivreSmetsyS92626AMPOxEvOBcvICA+EREIBSFmNAwbBW95
AitUnoitcennoCslennahCledoMecivreSmetsyS926263YhNBBKAisvL0c5Jh4XTg==
AitUnoitcennoCslennahCledoMecivreSmetsyS92626RwXGhFLN1A4PjArJmsMHxtnL0s=
BitUnoitcennoCslennahCledoMecivreSmetsyS92626ioLFBEVZQoVPigiHgEmIyI4LBohQQA0O3BHRQ==
BitUnoitcennoCslennahCledoMecivreSmetsyS92626ioLABE/LBQvSjRiHg8YAxs6MEchJSoKAxVCDjcMHUU=
BitUnoitcennoCslennahCledoMecivreSmetsyS92626HcTMhc/AjMVFUs4HgEMCSwDNAIaQRhx
BitUnoitcennoCslennahCledoMecivreSmetsyS92626HZgcT0SBiosICAHJREIHyEDMDIaQGd0AxobSA==
AitUnoitcennoCslennahCledoMecivreSmetsyS92626HYPciU/PBssLzQ5FWt7BhwTNEIcM295
BitUnoitcennoCslennahCledoMecivreSmetsyS92626HZgcT0SBjYsICAHJREIHyEDMDIaQGd0AxobSA==
BitUnoitcennoCslennahCledoMecivreSmetsyS926263YPciU/PBssLzQ5FWt7BhwTNEIcM295
BitUnoitcennoCslennahCledoMecivreSmetsyS92626ykPOBcvZQ4gPxorHg4EGA==
itUnoitcennoCslennahCledoMecivreSmetsyS92626
AitUnoitcennoCslennahCledoMecivreSmetsyS92626HYPciJKbRcVSkshHg8mAxo5MAAcBW95
NitUnoitcennoCslennahCledoMecivreSmetsyS92626hwXLhASGRs6FSAhJhh/Tg==
BitUnoitcennoCslennahCledoMecivreSmetsyS926263YxNBdJMBIUFSAkIC5/Tg==
lennahCSporetnI54200
Replace
FromBase64CharArray
ToCharArray
Length
GetString
RDYBsxTbvxr
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
VS_VERSION_INFO
VarFileInfo
Translation
StringFileInfo
000004b0
FileDescription
FileVersion
0.0.0.0
InternalName
Saeculums.exe
LegalCopyright
OriginalFilename
Saeculums.exe
ProductVersion
0.0.0.0
Assembly Version
0.0.0.0
Antivirus Signature
Bkav Clean
Lionic Trojan.MSIL.Convagent.i!c
Elastic malicious (high confidence)
MicroWorld-eScan Trojan.GenericKD.37947265
FireEye Generic.mg.a7194594cf6c6e4c
CAT-QuickHeal Clean
McAfee GenericRXPZ-YL!A7194594CF6C
Cylance Unsafe
Zillya Clean
Sangfor Infostealer.MSIL.Convagent.gen
K7AntiVirus Trojan ( 005887fd1 )
BitDefender Trojan.GenericKD.37947265
K7GW Trojan ( 005887fd1 )
Cybereason malicious.b8b42f
Baidu Clean
Cyren W32/MSIL_Troj.CY.gen!Eldorado
Symantec ML.Attribute.HighConfidence
ESET-NOD32 a variant of MSIL/Kryptik.ADAC
APEX Malicious
Paloalto generic.ml
ClamAV Clean
Kaspersky HEUR:Trojan-PSW.MSIL.Convagent.gen
Alibaba Clean
NANO-Antivirus Clean
ViRobot Clean
Rising Clean
Ad-Aware Trojan.GenericKD.37947265
TACHYON Clean
Emsisoft Trojan.GenericKD.37947265 (B)
Comodo Clean
F-Secure Clean
DrWeb Trojan.PackedNET.972
VIPRE Clean
TrendMicro TROJ_GEN.R002C0DK421
McAfee-GW-Edition BehavesLike.Win32.Generic.fz
CMC Clean
Sophos Mal/Generic-S
Ikarus Trojan-Spy.MSIL.Agent
GData Trojan.GenericKD.37947265
Jiangmin Clean
Webroot Clean
Avira HEUR/AGEN.1144480
Antiy-AVL Clean
Kingsoft Win32.PSWTroj.Undef.(kcloud)
Gridinsoft Clean
Arcabit Clean
SUPERAntiSpyware Clean
ZoneAlarm Clean
Microsoft Trojan:MSIL/AgentTesla.LEG!MTB
Cynet Malicious (score: 100)
AhnLab-V3 Trojan/Win.Generic.C4628732
Acronis Clean
VBA32 Clean
ALYac Trojan.GenericKDZ.79325
MAX malware (ai score=85)
Malwarebytes Trojan.Crypt.MSIL.Generic
Panda Trj/GdSda.A
Zoner Clean
TrendMicro-HouseCall Clean
Tencent Msil.Trojan-qqpass.Qqrob.Lknh
Yandex Clean
SentinelOne Static AI - Malicious PE
eGambit Unsafe.AI_Score_100%
Fortinet MSIL/Kryptik.ACCF!tr
BitDefenderTheta Gen:NN.ZemsilF.34266.ym0@aaXeyVe
AVG Win32:PWSX-gen [Trj]
Avast Win32:PWSX-gen [Trj]
CrowdStrike win/malicious_confidence_90% (W)
MaxSecure Clean
No IRMA results available.