Static | ZeroBOX

PE Compile Time

2022-06-02 23:04:02

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00002000 0x00001884 0x00001a00 5.46940585727
.rsrc 0x00004000 0x00007d6e 0x00007e00 5.8814538293

Resources

Name Offset Size Language Sub-language File type
RT_ICON 0x0000b208 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x0000b208 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x0000b208 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x0000b208 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x0000b208 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x0000b208 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x0000b208 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x0000b208 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x0000b208 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x0000b208 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x0000b208 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x0000b208 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_GROUP_ICON 0x0000b6ac 0x000000ae LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_VERSION 0x0000b796 0x000003b2 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_MANIFEST 0x0000bb84 0x000001ea LANG_NEUTRAL SUBLANG_NEUTRAL XML 1.0 document, UTF-8 Unicode (with BOM) text, with CRLF line terminators

!This program cannot be run in DOS mode.
`.rsrc
,5+6+7+<+A
+&+++0+5+6
v4.0.30319
#Strings
Euvrnxp.exe
Euvrnxp
<Module>
mscorlib
Object
System
MemoryStream
System.IO
Settings
Pfgcct.Properties
ApplicationSettingsBase
System.Configuration
PoweredByAttribute
SmartAssembly.Attributes
Attribute
ResourceManager
System.Resources
CultureInfo
System.Globalization
HttpWebRequest
System.Net
HttpWebResponse
Stream
Assembly
System.Reflection
.cctor
Culture
Default
CompilationRelaxationsAttribute
System.Runtime.CompilerServices
RuntimeCompatibilityAttribute
DebuggableAttribute
System.Diagnostics
DebuggingModes
AssemblyTitleAttribute
AssemblyDescriptionAttribute
AssemblyConfigurationAttribute
AssemblyCompanyAttribute
AssemblyProductAttribute
AssemblyCopyrightAttribute
AssemblyTrademarkAttribute
ComVisibleAttribute
System.Runtime.InteropServices
GuidAttribute
AssemblyFileVersionAttribute
TargetFrameworkAttribute
System.Runtime.Versioning
GeneratedCodeAttribute
System.CodeDom.Compiler
DebuggerNonUserCodeAttribute
CompilerGeneratedAttribute
STAThreadAttribute
EditorBrowsableAttribute
System.ComponentModel
EditorBrowsableState
.resources
ToArray
CopyTo
IDisposable
Dispose
WebRequest
Create
Process
get_StartInfo
ProcessStartInfo
set_Arguments
set_WindowStyle
ProcessWindowStyle
WaitForExit
GetResponse
WebResponse
set_FileName
GZipStream
System.IO.Compression
CompressionMode
BufferedStream
Exception
ServicePointManager
set_SecurityProtocol
SecurityProtocolType
GetResponseStream
Func`2
InvokeMember
BindingFlags
Binder
GCHandle
GetTypes
System.Core
Enumerable
System.Linq
LastOrDefault
IEnumerable`1
System.Collections.Generic
get_FullName
String
op_Equality
GetTypeFromHandle
RuntimeTypeHandle
get_Assembly
SettingsBase
Synchronized
WrapNonExceptionThrows
Java Platform SE binary
Oracle Corporation
Java Platform SE 8 U333
Copyright
$fd3d3ece-6fcd-41f7-8503-54e3fe993c04
8.0.3330.2
.NETFramework,Version=v4.0
FrameworkDisplayName
.NET Framework 4(
#Powered by SmartAssembly 8.1.0.4892
3System.Resources.Tools.StronglyTypedResourceBuilder
16.0.0.0
KMicrosoft.VisualStudio.Editors.SettingsDesigner.SettingsSingleFileGenerator
16.10.0.0
lSystem.Resources.ResourceReader, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089#System.Resources.RuntimeResourceSet
PADPADP
333333333333333333330
wwwwwww
wwwwwwwwwww
wwwwwwx
wwwwwww
wwwwwwwx
3333333333330
wwwwwx
333333333307
3333330x
------
3YYYYii@
`iiiiiiiiiiiiiiiiiii
MTiiiiiYYY3
3iiiiiiL
iiiiiii
ziiiiiii3
s3iiiizzzzz
Tzzzzzz
zzzzzziii3ss
zzzzzzzzzzzzzT
zzzzzzzzzzzzzzzz
zzzzzzzzzzzzz`
zzzzzzzzzzzzzzzzz
zzzzzzzzzzzzzzT
zzzzzzzzzzzzz
zzzzzzzzzzzzzz
zzzziiiiiiiiiL
iiiiiiiizzz
iiiiiiiiiiiip;6
iiiiiiiiii
*[3iiiiiiiiiiiic
;wiiiiiiii3[[3iiiiiiiiiiii-
QiiiiiiiiiiiL
iiiizj
iiiiiii3[X3iiiiYYYYYYYYYz!TTTTTT
YYYYYYYYY
YYYYiii3X&3YYYY
YYY3&&3
#MMD]L
((((((((((((((K
>(N+RI
((((((((((((((((((
((((((((((((((V.
(((((((((((((((((((
i(((((((((((((((gu
(((((((((((((((((((i
i(((((((((((((((=
1=((((((((((((((((((i
Y(((((((((((((((($
(((((((((((((((((Y
Z$gwjjjjjjjjjjjjjjjjjjjjwg$Z
+]J8gwjjj
jjjjjwg8
jjjjw\
5wwwwar<P@+
wwwww5
5wwwwws
wwwww5
E\++++++++%
U++++++++++\Ef\++++++++|4D
>OUs@@z
+++++++\f=\wwwwwwwKlrBkkB7
6Kwwwww\=t5wwwwwwwKWR%2&&2O
;rwwwww5t
5jjjjjw@s
jjjjj5
jjjjjs
jj;jjjjj
jjjjj@6r0
PP%d(jjjjj
NNNNNNNNN
AVNNNNNNNNN
w,,,,,,,,,
,,,,,,,,,,,,w
<w,,,,,,,,,
}',,,,,,,,,,,w<
j,,,,,,,,,,'n
)3nn~,,,,,,,,,,j
TTTTTTTTTTTTT
TTTTTTTTT
TTTTTTTTTTTTTT
^TTTTTTTTT
TTTTTTTTTTTTTTT{iTTTTTTTTT
TTTTTTTTTTTTTTTTTTTTTT
,,,,,,,,,,,,,,,,,,,,
]]]]]]]]]]]]]]]]]]]]]]]]]
T#/////
/&7$$H///
333O"B
@@OG0O@@@@
@@@@O0
.....@3?
@......
......
4@......
LLLLLLL
LLLLLL
LLLLLLLLL
LLLLLLLL
X6N]WWWWWWWWWWWWWWWWWWWWWW]
!!!!!!!!!!!8
!+%

:'''''''''''''':
mW73mW7
nX9foY:
pZ:!q[;
pZ:!q[<x
q[<xr]>
nX9@nX9
pZ;@vfN
r]>@vfO
r]>@u_@
r\=hr\=
r\=hwaB
<?xml version="1.0" encoding="UTF-8" standalone="yes"?>
<assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0">
<assemblyIdentity version="1.0.0.0" name="MyApplication.app"/>
<trustInfo xmlns="urn:schemas-microsoft-com:asm.v2">
<security>
<requestedPrivileges xmlns="urn:schemas-microsoft-com:asm.v3">
<requestedExecutionLevel level="asInvoker" uiAccess="false"/>
</requestedPrivileges>
</security>
</trustInfo>
</assembly>
powershell
-noexit
http://bizimsohbet.net/yes/Euvrnxp_Efhddnew.jpg
Ihxjgjukazmupeyeorsfredu.Qssflnxmb
Messqxhzkiexfihrc
VS_VERSION_INFO
VarFileInfo
Translation
StringFileInfo
000004b0
Comments
Java Platform SE binary
CompanyName
Oracle Corporation
FileDescription
Java Platform SE binary
FileVersion
8.0.3330.2
InternalName
Euvrnxp.exe
LegalCopyright
Copyright
LegalTrademarks
OriginalFilename
Euvrnxp.exe
ProductName
Java Platform SE 8 U333
ProductVersion
8.0.3330.2
Assembly Version
8.0.3330.2
Antivirus Signature
Bkav Clean
Lionic Clean
tehtris Clean
MicroWorld-eScan Trojan.GenericKD.39730817
FireEye Trojan.GenericKD.39730817
CAT-QuickHeal Clean
ALYac Trojan.GenericKD.39730817
Cylance Clean
Sangfor Trojan.Win32.Save.a
K7AntiVirus Trojan-Downloader ( 00593d051 )
BitDefender Trojan.GenericKD.39730817
K7GW Trojan-Downloader ( 00593d051 )
CrowdStrike win/malicious_confidence_100% (W)
BitDefenderTheta Clean
VirIT Clean
Cyren W64/ABRisk.INNM-2351
Elastic malicious (high confidence)
ESET-NOD32 MSIL/TrojanDownloader.Agent.MBA
Baidu Clean
APEX Malicious
Paloalto generic.ml
ClamAV Clean
Kaspersky HEUR:Backdoor.MSIL.Androm.gen
Alibaba Backdoor:MSIL/Androm.988d1ab5
NANO-Antivirus Clean
ViRobot Clean
Rising Clean
Ad-Aware Trojan.GenericKD.39730817
TACHYON Clean
Sophos Mal/Generic-S
Comodo Clean
F-Secure Clean
DrWeb Clean
Zillya Clean
TrendMicro Clean
McAfee-GW-Edition Artemis!Trojan
Trapmine Clean
CMC Clean
Emsisoft Trojan.GenericKD.39730817 (B)
SentinelOne Static AI - Suspicious PE
GData Trojan.GenericKD.39730817
Jiangmin Clean
Webroot Clean
Avira Clean
Kingsoft Clean
Gridinsoft Ransom.Win64.Wacatac.sa
Arcabit Clean
SUPERAntiSpyware Clean
ZoneAlarm Clean
Microsoft Trojan:Win32/Wacatac.B!ml
Cynet Clean
AhnLab-V3 Clean
Acronis Clean
McAfee Artemis!3DD44ADBBC24
MAX malware (ai score=81)
VBA32 Clean
Malwarebytes Clean
Panda Clean
Zoner Clean
TrendMicro-HouseCall Clean
Tencent Msil.Trojan-downloader.Agent.Losa
Yandex Clean
Ikarus Trojan-Downloader.MSIL.Agent
MaxSecure Clean
Fortinet Malicious_Behavior.SB
AVG Win64:RATX-gen [Trj]
Cybereason Clean
Avast Win64:RATX-gen [Trj]
No IRMA results available.