Static | ZeroBOX

PE Compile Time

2059-02-18 05:25:58

PDB Path

GRSDFSDGSD.pdb

PE Imphash

f34d5f2d4577ed6d9ceec516c1f5a744

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00002000 0x0000c304 0x0000c400 5.80166804764
.rsrc 0x00010000 0x0000e5a4 0x0000e600 7.27532420521
.reloc 0x00020000 0x0000000c 0x00000200 0.0611628522412

Resources

Name Offset Size Language Sub-language File type
RT_ICON 0x00013db8 0x0000a291 LANG_NEUTRAL SUBLANG_NEUTRAL PNG image data, 256 x 256, 8-bit/color RGBA, non-interlaced
RT_ICON 0x00013db8 0x0000a291 LANG_NEUTRAL SUBLANG_NEUTRAL PNG image data, 256 x 256, 8-bit/color RGBA, non-interlaced
RT_ICON 0x00013db8 0x0000a291 LANG_NEUTRAL SUBLANG_NEUTRAL PNG image data, 256 x 256, 8-bit/color RGBA, non-interlaced
RT_ICON 0x00013db8 0x0000a291 LANG_NEUTRAL SUBLANG_NEUTRAL PNG image data, 256 x 256, 8-bit/color RGBA, non-interlaced
RT_GROUP_ICON 0x0001e04c 0x0000003e LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_VERSION 0x0001e08c 0x0000032c LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_MANIFEST 0x0001e3b8 0x000001ea LANG_NEUTRAL SUBLANG_NEUTRAL XML 1.0 document, UTF-8 Unicode (with BOM) text, with CRLF line terminators

Imports

Library mscoree.dll:
0x402000 _CorExeMain

!This program cannot be run in DOS mode.
`.rsrc
@.reloc
(aj}A(
(WM7m(
Z?_d
_b`*
v4.0.30319
#Strings
GRSDFSDGSD
CompilationRelaxationsAttribute
System.Runtime.CompilerServices
mscorlib
System
Boolean
RuntimeCompatibilityAttribute
DebuggableAttribute
System.Diagnostics
DebuggingModes
AssemblyTitleAttribute
System.Reflection
String
AssemblyDescriptionAttribute
AssemblyConfigurationAttribute
AssemblyCompanyAttribute
AssemblyProductAttribute
AssemblyCopyrightAttribute
AssemblyTrademarkAttribute
ComVisibleAttribute
System.Runtime.InteropServices
GuidAttribute
AssemblyFileVersionAttribute
TargetFrameworkAttribute
System.Runtime.Versioning
SuppressIldasmAttribute
5ff5a13a-5f82-420e-a73e-1f07e1e3d8ca
GRSDFSDGSD.exe
<Module>
System.Windows.Forms
c8kf9fPEeeQtUB3eTp
rGPeQ81NJo0ctLPnpJ
Object
Resources
GRSDFSDGSD.Properties
Settings
ApplicationSettingsBase
System.Configuration
<Module>{D8AA679D-91C4-4A2F-8A16-ACC7BB9E211C}
OD63JkttYoFuDCQ0fa
eTOOiuEA4ILrbSDTCE
GXX1gv62AeRFaxFJaU
MulticastDelegate
LJMFMrcxGFq5NI1EPo
bBMxg9KmFWsh2gwc9H
nqxfFbl24hZe5vkJHJ
yRwiRAWJqWX7hsiEQp
Attribute
XN67OZ8i1PvFASsKGx`1
tqhRZ19vHkm0X47XCh
tirgno2rKIvG84pd6L
KGtssgGUtQ00ASDxds
v1Yo01VMEym8RTePcO
ValueType
ze9xuBrvKwf0SCFIlG
N9PLyIRIscLhQuiHFr
rkHRneUjya6YgiNaFM
hFiB0md67kwNEVRoQi
puPxZbspA1QF10gKtv
yDkRkpCOSPmmWHRe5O
GfgvsQks8ev9UC3hXw
mqxDjM3XB8b2RIcDtR
DbHQNxpeLk0bM3SwfB
PReEOlghbnImeHdKyn
<PrivateImplementationDetails>{DA38E59E-A064-40D7-8167-1BB36BB68EC0}
__StaticArrayInitTypeSize=256
__StaticArrayInitTypeSize=40
__StaticArrayInitTypeSize=30
__StaticArrayInitTypeSize=32
__StaticArrayInitTypeSize=16
__StaticArrayInitTypeSize=64
__StaticArrayInitTypeSize=18
xQt1UB3eT
IContainer
System.ComponentModel
usGtPeQ8N
ColorDialog
Ho0EctLPn
uJX6D63Jk
cYocFuDCQ
LfaK6TOOi
DA4lILrbS
NTCWEyXX1
vv28AeRFa
CheckBox
TFJqaUBJM
JMr9xGFq5
BI12EPoPB
XxgG9mFWs
J2gVwc9Hr
jxfrFb24h
ze5RvkJHJ
yRwUiRAJq
hX7dhsiEQ
uMNs67OZi
bPvCFASsK
mx4kQslAy
n6Z34a5uQ
Dispose
disposing
IDisposable
c8kPf9fEe
Control
SuspendLayout
set_AutoSize
System.Drawing
set_Location
set_Name
set_Size
set_TabIndex
set_Text
ButtonBase
set_UseVisualStyleBackColor
Single
ContainerControl
set_AutoScaleDimensions
set_AutoScaleMode
AutoScaleMode
SystemColors
get_ButtonFace
set_BackColor
set_ClientSize
get_Controls
ControlCollection
set_ForeColor
set_ShowIcon
set_ShowInTaskbar
FromArgb
set_TransparencyKey
ResumeLayout
PerformLayout
qA4p3qhRZ
WebClient
System.Net
Assembly
ServicePointManager
set_SecurityProtocol
SecurityProtocolType
Console
WriteLine
Replace
DownloadData
GetType
InvokeMember
BindingFlags
Binder
bvHgkm0X4
ResourceManager
System.Resources
AXC5h3irg
CultureInfo
System.Globalization
get_ResourceManager
GetTypeFromHandle
RuntimeTypeHandle
get_Assembly
get_Culture
set_Culture
Culture
defaultInstance
get_Default
.cctor
SettingsBase
Synchronized
Default
KoreKIvG8
Module
meOub3ttLJbOI
typemdt
FieldInfo
MethodInfo
ResolveType
GetFields
MemberInfo
get_MetadataToken
ResolveMethod
MethodBase
Delegate
CreateDelegate
SetValue
get_ManifestModule
IntPtr
Invoke
BeginInvoke
IAsyncResult
AsyncCallback
callback
object
EndInvoke
result
RJ3PdKxhOg
Dictionary`2
System.Collections.Generic
cS4PeYRxrE
afePfhrXMV
SortedList
System.Collections
URePZdKNs5
VLFPjVZ099
ORFPFkj1Ov
Hashtable
dK1PhJ455r
dpNPn1mgO4
DJsP0Q7mZm
WgmPBJ6B8t
mOZPSI9NdO
V7TPsn2AWT
dRHPQsB3Kj
JDVPwdv0u9
R8YPGX08AS
UInt32
KXMPCd23OV
fMHP3ax8PX
voNP9XQHiT
SHHPXLJ13I
xkdPu4lfwZ
pJNPmEi19A
GwaP5E85u7
nDcPr4MBLS
vokPNHFbar
HKVPJhyLFQ
L4LPpYwdua
DrCPYHDjja
xMbPk8d87k
n8fP2JAtOh
fb9PgCHShX
LjLPV7xMCx
aPhPyNiMuy
uFrPUQd9ym
RSACryptoServiceProvider
System.Security.Cryptography
J06P73KmKA
i7wPotV9VT
EYxPDljvvn
EALPR4xwGX
RuntimeHelpers
InitializeArray
RuntimeFieldHandle
set_UseMachineKeyStore
nQsub3tWKF1KW
RpdQ6LnGt
UInt64
BitConverter
GetBytes
rsgfUtQ00
UInt16
XSDZxdsg1
Eo071MEym
iRTNePcOf
x9xjuBvKw
y0SuCFIlG
N9PmLyIIs
SymmetricAlgorithm
AesCryptoServiceProvider
System.Core
RijndaelManaged
Activator
CreateInstance
ObjectHandle
System.Runtime.Remoting
Unwrap
fLhYQuiHF
CryptoConfig
get_AllowOnlyFipsAlgorithms
nskwHRnej
MD5CryptoServiceProvider
HashAlgorithm
ComputeHash
Ga6oYgiNa
Stream
System.IO
IMWyFiB0m
TransformBlock
e7kJwNEVR
BinaryReader
get_BaseStream
set_Position
ReadUInt32
GQiFUuPxZ
ParameterInfo
DynamicMethod
System.Reflection.Emit
ILGenerator
Monitor
System.Threading
GetManifestResourceStream
get_Length
ReadBytes
MemoryStream
get_Item
get_Module
GetGenericArguments
get_IsStatic
get_FieldType
GetParameters
get_DeclaringType
get_IsValueType
MakeByRefType
get_ParameterType
get_ReturnType
GetILGenerator
OpCode
OpCodes
Ldarg_0
Ldarg_1
Ldarg_2
Ldarg_3
Ldarg_S
Tailcall
Callvirt
Exception
vKtnvfDkR
spO0SPmmW
PReB5Oofg
YsQSs8ev9
ICryptoTransform
CryptoStream
CryptoStreamMode
pC3DhXwGq
Convert
FromBase64String
Encoding
System.Text
get_Unicode
GetString
TDjXMXB8b
lRIHcDtRu
QHQbNxeLk
Marshal
GetMethod
KbMi3SwfB
get_Location
Exists
GetName
AssemblyName
get_CodeBase
ToString
GetProperty
PropertyInfo
GetValue
PRe4EOlhb
LoadLibrary
kernel32
KImaeHdKy
GetProcAddress
KDJxKFWn2
Concat
GetDelegateForFunctionPointer
ShSOJCx7S
SQ0TOUDlS
sxhLG0n0f
eoUM8PQCX
FITAOBwAP
umLocehuEC
op_Equality
okEvUJVq9
FileStream
FileMode
FileAccess
FileShare
PryzsSHst
hHIPIp31jC
ToArray
EUIPPpKG3t
set_Key
set_IV
CreateDecryptor
e4XP1e26ph
sS7PtUDMQf
MNlPE3SGcZ
HPFP6xU1ce
BqMPcxS3CK
mR8PKohm7s
usZPlxjsMC
vwQPWUnucv
oIMP8aiY9s
h1cPq2CEqH
uUseiUuPOYhBvkf7eM
SEYPT8To683RvFXeY3
pm3ToT9ZwYIdIjfDsc
wRWYJ1k8boPa7w49wh
VsYFN0Kx1Nwsa89jZL
X8vsd6QUwR8whox7DG
gwTvQ7qLqBmPKjpUeL
Reverse
f4dlR2oU139NJXSxcX
yFseGHnWfaQTKlU02W
GetPublicKeyToken
m5ryfrFTbsj6XQ7XMv
LB0LrdG07t71ucKSFn
CipherMode
set_Mode
WeeO5ydN1AfAdtZJ61
Nk4pOBgN5KCgkyZXsP
xHHcCQltFyR6ojIX7s
zOLWNMsLrEpMuhSgVH
FlushFinalBlock
FGFRkhhPJ2EW68uciB
vVUrnPDUphKTRKMLYp
Pkf5qnp83Im3g7sDGW
ToInt32
tjC4O4Cw086VfPaDyg
JpKxk7BfNb1SqBKgNS
e7Wc4v8QkrKkgyBDCN
PEUdN2NbkD38plhJLw
BfkwaWZpgsUvpFFeKa
SQslAyqV6Z4a5uQdA4
u8GPHS5VKh
CreateEncryptor
ToBase64String
classthis
nativeEntry
nativeSizeOfCode
dYuPbVvM78
j1aPibx5yJ
HHaPTdfcTb
KDikMXewCI
O5VP4fZLOM
e4hPagG9oo
qJJPxgf8Lw
ReadInt32
PWZPOkm1uI
hModule
lpName
lpType
lpAddress
dwSize
flAllocationType
flProtect
hProcess
lpBaseAddress
buffer
lpNumberOfBytesWritten
flNewProtect
lpflOldProtect
dwDesiredAccess
bInheritHandle
dwProcessId
value__
LorPL9ameP
XGWub3tzhHsZ3
$$method0x6000317-1
$$method0x6000332-1
$$method0x6000332-2
$$method0x6000340-1
$$method0x6000340-2
$$method0x6000353-1
$$method0x6000395-1
$$method0x60005b3-1
GeneratedCodeAttribute
System.CodeDom.Compiler
DebuggerNonUserCodeAttribute
CompilerGeneratedAttribute
EditorBrowsableAttribute
EditorBrowsableState
UnmanagedFunctionPointerAttribute
CallingConvention
CharSet
FlagsAttribute
msrxyGyjw4r6V5GywM.6s0imveyBTNbGKcOET
GRSDFSDGSD.Form1.resources
GRSDFSDGSD.g.resources
aR3nbf8dQp2feLmk31.lSfgApatkdxsVcGcrktoFd.resources
GRSDFSDGSD.Properties.Resources.resources
WrapNonExceptionThrows
GRSDFSDGSD
Copyright
2021
$69e5eb26-e5bd-497b-a4a9-44cadb70d541
1.0.0.0
.NETFramework,Version=v4.5
FrameworkDisplayName
.NET Framework 4.5
3System.Resources.Tools.StronglyTypedResourceBuilder
16.0.0.0
KMicrosoft.VisualStudio.Editors.SettingsDesigner.SettingsSingleFileGenerator
16.10.0.0
bBMxg9KmFWsh2gwc9H.LJMFMrcxGFq5NI1EPo+yRwiRAWJqWX7hsiEQp+XN67OZ8i1PvFASsKGx`1[[System.Object, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]][]
SUsSystem.Runtime.InteropServices.CharSet, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089
CharSet
(d{j[1
lSystem.Resources.ResourceReader, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089#System.Resources.RuntimeResourceSet
PADPADP
lSystem.Resources.ResourceReader, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089#System.Resources.RuntimeResourceSet
PADPADP
lSystem.Resources.ResourceReader, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089#System.Resources.RuntimeResourceSet
fSystem.Drawing.Icon, System.Drawing, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3ajSystem.CodeDom.MemberAttributes, System, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089mSystem.Globalization.CultureInfo, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089fSystem.Drawing.Size, System.Drawing, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a
QSystem.Drawing, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a
System.Drawing.Icon
IconData
IconSize
System.Drawing.Size
System.Drawing.Size
height
ISystem, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089
System.CodeDom.MemberAttributes
value__
System.Globalization.CultureInfo
m_isReadOnly
compareInfo
textInfo
numInfo
dateTimeInfo
calendar
m_dataItem
cultureID
m_name
m_useUserOverride
System.Globalization.CompareInfo
System.Globalization.TextInfo%System.Globalization.NumberFormatInfo'System.Globalization.DateTimeFormatInfo
System.Globalization.Calendar
System.Globalization.CompareInfo
m_name
win32LCID
culture
m_SortVersion
System.Globalization.SortVersion
System.Globalization.TextInfo
m_listSeparator
m_isReadOnly
m_cultureName
customCultureName
m_nDataItem
m_useUserOverride
m_win32LangID
%System.Globalization.NumberFormatInfo"
numberGroupSizes
currencyGroupSizes
percentGroupSizes
positiveSign
negativeSign
numberDecimalSeparator
numberGroupSeparator
currencyGroupSeparator
currencyDecimalSeparator
currencySymbol
ansiCurrencySymbol
nanSymbol
positiveInfinitySymbol
negativeInfinitySymbol
percentDecimalSeparator
percentGroupSeparator
percentSymbol
perMilleSymbol
nativeDigits
m_dataItem
numberDecimalDigits
currencyDecimalDigits
currencyPositivePattern
currencyNegativePattern
numberNegativePattern
percentPositivePattern
percentNegativePattern
percentDecimalDigits
digitSubstitution
isReadOnly
m_useUserOverride
m_isInvariant
validForParseAsNumber
validForParseAsCurrency
Infinity
-Infinity
QSystem.Drawing, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a
System.Drawing.Size
height
lSystem.Resources.ResourceReader, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089#System.Resources.RuntimeResourceSet
PADPADP
Rfhn M
GRSDFSDGSD.pdb
_CorExeMain
mscoree.dll
&IDATx^
7;nI>{
=vjse:
yZ=yf#
KxCP|Cp
0L"p)?K
"0OG@o
0S?]O}H?
q`P|Cq
X!hL!Xe6
CzBK`
!>1?_%@
0O=vd."@
!<1%-H`
!>cM~K
opE`iP|
w:6Bu>6
0D`("0
dO~K~/
@X~Ci#@
' >G Z
_|C@|f"
=R|"(>
-~I" ?
>)XA#@\J
B[@'[XKj
h@h"B~"(
){4 zi#@8"@
t<xb="@1
<?xml version="1.0" encoding="UTF-8" standalone="yes"?>
<assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0">
<assemblyIdentity version="1.0.0.0" name="MyApplication.app"/>
<trustInfo xmlns="urn:schemas-microsoft-com:asm.v2">
<security>
<requestedPrivileges xmlns="urn:schemas-microsoft-com:asm.v3">
<requestedExecutionLevel level="asInvoker" uiAccess="false"/>
</requestedPrivileges>
</security>
</trustInfo>
</assembly>
)U71UDAUZQUZYUZaUZiUZqUZyUZ
.[_.S_.k
.Ke.#J.
.+_.CJ.;_.3_I
GRSDFSDGSD.Properties.Resources
System.Core, Version=3.5.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089
System.Security.Cryptography.AesCryptoServiceProvider
90adgIHuTFyHX2PeR2.5WCuy0Ws8AvyrtpQNL
{11111-22222-10009-11112}
msrxyGyjw4r6V5GywM.6s0imveyBTNbGKcOET
{11111-22222-50001-00000}
GetDelegateForFunctionPointer
file:///
Location
ResourceA
Virtual
Write
Process
Memory
Protect
Process
Close
Handle
kernel
32.dll
{11111-22222-20001-00001}
{11111-22222-20001-00002}
{11111-22222-30001-00001}
{11111-22222-30001-00002}
{11111-22222-40001-00001}
{11111-22222-40001-00002}
{11111-22222-50001-00001}
{11111-22222-50001-00002}
$this.SnapToGrid
$this.TrayLargeIcon
$this.Icon
$this.Locked
$this.DrawGrid
progressBar1.Modifiers
$this.Localizable
$this.Language
$this.GridSize
$this.TrayHeight
progressBar1.Locked
VS_VERSION_INFO
VarFileInfo
Translation
StringFileInfo
000004b0
Comments
CompanyName
FileDescription
GRSDFSDGSD
FileVersion
1.0.0.0
InternalName
GRSDFSDGSD.exe
LegalCopyright
Copyright
2021
LegalTrademarks
OriginalFilename
GRSDFSDGSD.exe
ProductName
GRSDFSDGSD
ProductVersion
1.0.0.0
Assembly Version
1.0.0.0
Antivirus Signature
Bkav Clean
Lionic Trojan.Win32.Androm.m!c
Elastic malicious (high confidence)
MicroWorld-eScan Clean
CMC Clean
CAT-QuickHeal Clean
ALYac Clean
Cylance Unsafe
Zillya Clean
Sangfor Clean
K7AntiVirus Clean
BitDefender Clean
K7GW Clean
Cybereason Clean
Baidu Clean
Cyren W32/MSIL_Kryptik.GAL.gen!Eldorado
Symantec MSIL.Downloader!gen2
ESET-NOD32 a variant of MSIL/TrojanDownloader.Agent.JDY
APEX Malicious
Paloalto Clean
ClamAV Clean
Kaspersky UDS:DangerousObject.Multi.Generic
Alibaba Clean
NANO-Antivirus Clean
ViRobot Clean
Rising Clean
Ad-Aware Clean
Emsisoft Clean
Comodo Clean
F-Secure Clean
DrWeb Clean
VIPRE Clean
TrendMicro Clean
McAfee-GW-Edition Agent-FOS!B7426DF3B449
FireEye Clean
Sophos Mal/Generic-S
SentinelOne Static AI - Malicious PE
GData Clean
Jiangmin Clean
Webroot Clean
Avira Clean
MAX Clean
Antiy-AVL Clean
Kingsoft Win32.Troj.Undef.(kcloud)
Gridinsoft Clean
Arcabit Clean
SUPERAntiSpyware Clean
ZoneAlarm Clean
Microsoft Trojan:Win32/AgentTesla!ml
Cynet Malicious (score: 100)
AhnLab-V3 Clean
Acronis Clean
McAfee Agent-FOS!B7426DF3B449
TACHYON Clean
VBA32 Clean
Malwarebytes Malware.AI.770175454
Panda Clean
Zoner Clean
TrendMicro-HouseCall Clean
Tencent Msil.Trojan-downloader.Agent.Pepe
Yandex Clean
Ikarus Clean
eGambit Unsafe.AI_Score_96%
Fortinet MSIL/Agent.JDY!tr.dldr
BitDefenderTheta Gen:NN.ZemsilF.34266.gm0@aynygMk
AVG FileRepMalware
Avast FileRepMalware
CrowdStrike Clean
MaxSecure Trojan.Malware.300983.susgen
No IRMA results available.