Static | ZeroBOX

PE Compile Time

2022-10-28 14:41:16

PE Imphash

f34d5f2d4577ed6d9ceec516c1f5a744

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00002000 0x0008ad88 0x0008ae00 7.99034368402
.rsrc 0x0008e000 0x00000abc 0x00000c00 3.90904549762
.reloc 0x00090000 0x0000000c 0x00000200 0.101910425663

Resources

Name Offset Size Language Sub-language File type
RT_ICON 0x0008e258 0x000002e8 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_ICON 0x0008e258 0x000002e8 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_ICON 0x0008e550 0x00000022 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_VERSION 0x0008e584 0x00000338 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_MANIFEST 0x0008e8cc 0x000001ea LANG_NEUTRAL SUBLANG_NEUTRAL XML 1.0 document, UTF-8 Unicode (with BOM) text, with CRLF line terminators

Imports

Library mscoree.dll:
0x402000 _CorExeMain

!This program cannot be run in DOS mode.
`.rsrc
@.reloc
v4.0.30319
#Strings
<.ctor>b__1_0
<StartTimer>b__4_0
<>9__5_0
<LoadData>b__5_0
<.ctor>b__1_1
IEnumerable`1
Action`1
ObservableCollection`1
List`1
Abz_002
ToInt32
<Module>
System.IO
get_OEjZW
System.Windows.Media
System.Windows.Data
LoadData
mscorlib
System.Collections.Generic
connectionId
Thread
_contentLoaded
OnStateChanged
get_Stated
System.Collections.Specialized
Synchronized
<Message>k__BackingField
<Name>k__BackingField
<UpdateTime>k__BackingField
<RequestTime>k__BackingField
<Color>k__BackingField
<Content>k__BackingField
UriKind
CreateInstance
defaultInstance
get_Message
set_Message
Enumerable
set_Visible
RuntimeTypeHandle
GetTypeFromHandle
get_Name
set_Name
get_HostName
DateTime
get_UpdateTime
set_UpdateTime
get_RequestTime
set_RequestTime
GetType
targetType
System.Core
PresentationCore
get_Culture
set_Culture
resourceCulture
culture
ApplicationSettingsBase
WindowsBase
WebResponse
GetResponse
DebuggerBrowsableState
EditorBrowsableState
IndicatorState
get_WindowState
set_WindowState
STAThreadAttribute
CompilerGeneratedAttribute
GeneratedCodeAttribute
DebuggerNonUserCodeAttribute
DebuggableAttribute
DebuggerBrowsableAttribute
EditorBrowsableAttribute
ComVisibleAttribute
AssemblyAssociatedContentFileAttribute
AssemblyTitleAttribute
AssemblyTrademarkAttribute
TargetFrameworkAttribute
AssemblyFileVersionAttribute
ValueConversionAttribute
AssemblyConfigurationAttribute
AssemblyDescriptionAttribute
ThemeInfoAttribute
CompilationRelaxationsAttribute
AssemblyProductAttribute
AssemblyCopyrightAttribute
AssemblyCompanyAttribute
RuntimeCompatibilityAttribute
PhSJY.exe
Deserialize
Minimize
Maximize
System.Threading
System.Windows.Threading
Encoding
System.Runtime.Versioning
ConvertFromString
ToString
System.Drawing
ForEach
SolidColorBrush
set_StartupUri
ConvertBack
add_Tick
add_Click
add_DoubleClick
PresentationFramework
set_Interval
System.Collections.ObjectModel
System.ComponentModel
System.Xaml
GetResponseStream
get_Item
System
resourceMan
TimeSpan
AppDomain
GetDomain
set_Icon
NotifyIcon
_notifyIcon
Application
ResourceDictionaryLocation
System.Configuration
System.Globalization
System.Reflection
NameValueCollection
NotImplementedException
InvalidOperationException
Newtonsoft.Json
CultureInfo
MemberInfo
Kukulo
Bitmap
System.Windows.Markup
System.Linq
StreamReader
JsonReader
JsonTextReader
get_ResourceManager
ConfigurationManager
EventHandler
System.CodeDom.Compiler
DispatcherTimer
StartTimer
parameter
TypeConverter
IValueConverter
StringToBrushConverter
JsonSerializer
get_Color
set_Color
Activator
.cctor
IComponentConnector
System.Diagnostics
FromSeconds
System.Runtime.InteropServices
System.Runtime.CompilerServices
System.Resources
System.Windows.Resources
PhSJY.g.resources
Qupla.IndicatorServer.TrayClient.Properties.Resources.resources
Qupla.IndicatorServer.TrayClient.Industury.resources
DebuggingModes
Qupla.IndicatorServer.TrayClient.Properties
GetExportedTypes
GetIndicatorStates
GetBytes
ISettings
AppConfigSettings
get_AppSettings
_settings
EventArgs
System.Windows.Forms
System.Windows
Concat
Format
GetObject
System.Windows.Markup.IComponentConnector.Connect
System.Net
target
get_Default
CreateDefault
IClient
Qupla.IndicatorServer.TrayClient
_client
LoadComponent
InitializeComponent
get_Content
set_Content
Convert
WebRequest
ToList
System.Text
get_tana_logo_new
get_Now
MainWindow
get_Assembly
Industury
WrapNonExceptionThrows
TrayClient
IndicatorServer
Copyright
Qupla
1.0.0.0
trayicon.ico
).NETFramework,Version=v4.0,Profile=Client
FrameworkDisplayName.NET Framework 4 Client Profile
PresentationBuildTasks
4.0.0.0
3System.Resources.Tools.StronglyTypedResourceBuilder
16.0.0.0
ZSystem.String, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089oSystem.Windows.Media.Brush, PresentationCore, Version=4.0.0.0, Culture=neutral, PublicKeyToken=31bf3856ad364e35
KMicrosoft.VisualStudio.Editors.SettingsDesigner.SettingsSingleFileGenerator
16.0.0.0
lSystem.Resources.ResourceReader, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089#System.Resources.RuntimeResourceSet
PADPADP
<PhSJY, Version=1.0.0.0, Culture=neutral, PublicKeyToken=null
S.clr-namespace:Qupla.IndicatorServer.TrayClient Qupla.IndicatorServer.TrayClient
+Qupla.IndicatorServer.TrayClient.MainWindow
NWindowsBase, Version=4.0.0.0, Culture=neutral, PublicKeyToken=31bf3856ad364e35
SPresentationCore, Version=4.0.0.0, Culture=neutral, PublicKeyToken=31bf3856ad364e35
XPresentationFramework, Version=4.0.0.0, Culture=neutral, PublicKeyToken=31bf3856ad364e35
9http://schemas.microsoft.com/winfx/2006/xaml/presentation
NSystem.Xaml, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089
x,http://schemas.microsoft.com/winfx/2006/xaml
q.clr-namespace:Qupla.IndicatorServer.TrayClient
Title$
MainWindow
WindowState$
Minimized=
Resources
0Qupla.IndicatorServer.TrayClient.IndicatorStates
IndicatorStates
7Qupla.IndicatorServer.TrayClient.StringToBrushConverter
StringToBrushConverter
Stretch=
Stretch=
Source#
wrapPanel
Stretch=
Stretch=
Stretch=
Stretch=
TargetType
Property
5 5 0 0q
Orientation$
Horizontal=
Color+
Converter#
Horizontal=
Requested:
RequestTime+
StringFormat$
{0:yyyy-MM-dd HH:mm:ss}
Horizontal=
Updated:
UpdateTime+$
{0:yyyy-MM-dd HH:mm:ss}
Message+
Content+
lSystem.Resources.ResourceReader, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089#System.Resources.RuntimeResourceSet
PADPADPV
^.BL0.M1X8L_
7NL=M^.BL0.M1X8L
.M1X8L?
1DR!LD>.M1X
7NL=M^nB
nm1^8NS
7N@5A^.BL0.
^.BL0.M1X
NR.FL0.M1X8L_
H0.M1X8L_
7NL=M^.BL0.M1X8L_
7NL=M^.BL0.M1X8l3
7NL=M^.B
pS?l3
6LL?M^.BL0.M1X8L
Mh^.ND<.
6NL=M^.BL0.M
7NL=M^.B
7NL=M^
I6-M1X8L_
7NL=M^.BL0.M1X8L_
7NL=M^.BL0.M1X8L_
4M1X8LE
7NL=M^
=NL=M^$
A0.M1X
st 78B
9,I?Q-(
H14BB6
K|Z=@^<
v6NL=MC
Bx'TM;
C=PX:az5
O[=Ae5G
L_),3
"A]<?J
=IA8OR
Ec.BL0.
0.M1X
!BO:+M,|4k5
.M1X8w
AL=,J1U
Ex9\<0
yAHBwj(
'=Xf5B~<
/M6V3Lh
^Rb7o%
(`ZY^Qhk
w+M1X8LP
7NL=M^!LC0^
Cd<QfJX
i6NN1C^
9PX:y^
'%d{62d
I^s-Yt
#4h>Cb'P
5M^.BL8
]q:NL=M^.BL0.M1X8L_
Mm'@sO,
.M1X8L_
C0.M1X
=Fj+BL0.M1X8LQ
*OH\5%M
lDiAF:0X|S8L_
7NL=M^.BL0.M1o<
NL=M^,NN0
3z"_OC
Q@?JO;
01jh?w
}?NIa=!MF
w+M1X8LE
M1X8L_
7NL=M^
9mL=M^.G
Aj$! ;lN
7NL=M^.B
Hp69AF
7NL=M^.BL0.M1@
D,.M1X8|?#
1L0P_CF
D\.[=N8
ke2FHA
X:HY<{8
A=M^.B
3Lj-K+
M.f+La3
7NL=M^
^.BL0$I
Hq:NL=M^
L_0.M1X
M1X8L_
L0.M1F
4|NL=M^
@-g-^N
7NL=[b4B
M ~-L/
J):BS8Z
*X3B@@7FA
[NL=M^
72^.BL0
XGnaHz
g_Ld[n
Kp7NL=M
k?72d==
7NL.IM.8
8KE7~L
7NM3L^.BL01
i6NO7B^
DM.M1X8z'!
<MR.FL%y
N(d{62H
L.IM.9
I.Z?M8
M.w`e>
C"PK@8ORi
Kx7NL=M
L0.M1b
xIL1ER.J
Q4,+3
=.J?]8BW
7NL=M_.CL`U
\1X8L_
Q`WM8U
b+]R-N]3
M.il{>
0@1X8L_
xIL3AP.S
[tdv@n\
_.MD=.
Ex:[kT
M ~-L_
4M1X8L_
7NL=M^
Hq:N[?
^.BL0$I
faLdEv
Hq:NL=M^
g0.M1X
B^.BL0$I
M1X8L/o
M.f+L/h
L^.BL0
=En6Bb
CfjMAe
A=^z3BL0.M ~-Ll-
?Cj&% ;nG
.M1X8Q
M^.BLN
0S @lP
x<Ex#z
OoQ2X3
vWyQ2W
<:G/]H
Gtc# KuI
[,HhPDW
MQ?Fq-
17[k'(
Oq:Nn1
w^.BL0
m<h"@]
~5Ma3T
g0.M1X
l5e8T[
=M^.Bm>
Ma4pxQ
~5Ma3T
=NL=M^
D^.M1X8
l5e8T[
w?NL=M^%
B_:;Ma
~5Ma3T
m<h"bGcEN
7y"_J*(Sb
M#I?Iw
hXGncg
>@uNNI~
M1X8L/
A0.M1X
=Sr<BL0.M#p"L/
1X8L_<F$K#9
M#I?Iw
]+v4tNL=M^;
1+Ae,]M
4M/x.Lm3
X3D\<{8
4M1X8LE
\2CnFQ
Hq:N[?
NR0.M1X
4M#p"LE
A=Gj(B
M1X8Ll-
@NF~<9
Ae<QeHX
.oL0.M1
i6NO7B^
@N)WsE
3z"_JE
QS,d4'
t[$r!E
l5e89yQ
.BL0.M1X8W
7@D3MW
t%*$#E
M_<F$K
&UP2a4'
2FA=Sw(T
\ER8cmD
*&50J:
S^;$y S
S|5DRI
N99|j5
Ta/&]E
D-$kP-
0Q\WV-U
)xKg3P
{DkcwH
!#wtF9
gX2{BHg[4
8*:Nka$
QUsk@*>
=Bm+Q*K
0p\^FW
;|4DTI
'oE2 F
eJ;kRj
9Df:7\
wU#c`L+
S.k\@R
sBK)9/
@"57OpV
@ 2)hs{
B!)e4E
pR._?L
$Je&cX
"%AI?>
LC,Du~
!Q!HN
U""P5q'
Fsa/XDLz
&J=)gj
NP4X\E
i:Bh:
lW>,LO
=48\1s
_(#uDw0v\
6@/LRm
Ebs6@/4
q|t<%A
>*TI9{
/z"gC46
9Dw0<hX
jxn_^0
#DeWaH
E{#ID'8
iycB|l\N
5WMOS2
/q0N.)x
@>`,z\
#DhYeL
CTjm8H
j~5c4a
:N!2Yhw
95Tt/E
)jCW/}cD
GcdL?6
@&Z(#8
,~mp}
FDRU8@
I=;q,S
tt!m5$YR)
1\DE4V
:8+?*8GIJ
nhGI6_
{A^;*t
=gq0N,)f
&`xWU.
N" "T4
_zn_@:
{N[2)^
*'5 Jdp
mJ3+3*,G
7/|6D?I
L7m|7B
w[&#ts
E{#PN+>
4 9_g-
&D[]4"Fx
&9ThyY
qXV-,A
}("rp5
l]MJft
BS"X)Z
;9FZEI
{tb -i
$$DgCl
?g($5v
}Ho:|3
DbPSTR
6NL=IF"B^
7NL=M^.BL0.M?X>
/M2XyH
K=AV*BK2/M0^=LE
F0.M2^>LX
P2OW,H+
2u)N,'
i6@j1]
M1X?L_
\54v:@K4#
jLb-mK
T-GA<^c+CS
QL=^zc@
}@]1|F
w7NY;A
8Ll-aIV
<0IST>
Du.M ~
oc7NY;f
Ls7~e_
*kT>hL0
1MA`BW
^7NY;z
6NfR|G/@
W;pM7D
M8NN?JF"B
5b(Bl-
P5k*LBI
DK-,)FT7^
-M6P1@Q
Oy3KWCEM~
K];%4K
6NM9HZ$@O40
7NL=M^.BL0$I
7NL=L^
K0.M?X>L_
7NK?Fn6BL0,I?X8L_
^.BI63I1P5DU
wB8Lj-
sB8LL-
H|9,-K
-u+bl#F
NA7Cz$@E8
@@z8\+M
BFz8\4M
LFz8\9MD9K
yhN3Cb{
[2E6*9
F5$B3O
3}8L]:W
B0c:Nz0D
EAL:4M
D+J)I
RykA<v"LmrN
,I@-oY
T+5BL-lY
A2.#(8i
N|3F~K
9nL3Dv=
@T(iR6|8Ka
L=N{+KL0
@=H`.T
R6x8Bp;I
.@W*yZ
9Ix3QkK
q=f,sT
C-L(fX
B9KQ-[
?u?Gg9Gf\
[]#.]D:lX
KeO;)N1X
V~I2R?L_
6NL=M^.B
7NL=M^.BL0.M1X
7NL=M^.BL0.M1X
^.BL0.M1X8L_
7NL=M^.BL0.M1X8L_
7NL=M^.BL0.M1X8L_
7NL=M^.BL0.M1X8L_
7NL=M^.BL0.M1X8L_
7NL=M^.BL0.M1X8L_
7NL=M^.BL0.M1X8L_
7NL=M^.BL0.M1X8L_
7NL=M^.BL0.M1X8L_
7NL=M^.BK2M
7NL=M^.BL0/M3^?L
K27NL=M^.BL0.M2^?L_
OL0.M1X8Lw2FV
9NN=M^.BJ4,M1X
3F@=OZ BL0.M1X8L_
+w*{NK?
7NL=M>.B@8
LU3K+K
0\I?8:H?3
Zt2FC7M
=M^.BL0.M1X8L_
7NL=M^.BL0.M1X8L_
7NL=M^.BL0.M1X8L_
7NL=M^.BL0.M1X8L_
7NL=M^.BL0.M1X8L_
7NL=M^.bK
7NL=M^.BL0.M1X8L_
7NL=M^.BL0.M1X8L_
7NL=M^.BL0.M1X8L_
7NL=M^.BL0.M1X8L_
7NL=M^.BL0.M1X8L_
7NL=M^.BL0.M1X8L_
7NL=M^.BL0.M1X8L_
7NL=M^.BL0.M1X8L_
7NL=M^.BL0.M1X8L_
7NL=M^.BL0.M1X8L_
7NL=M^.BL0.M1X8L_
7NL=M^.BL0.M1X8L_
7NL=M^.BL0.M1X8L_
7NL=M^.BL0.M1X8L_
7NL=M^.BL0.M1X8L_
7NL=M^.BL0.M1X8L_
7NL=M^.BL0.M1X8L_
7NL=M^.BL0.M1X8L_
7NL=M^.BL0.M1X8L_
7NL=M^.BL0.M1X8L_
7NL=M^.BL0.M1X8L_
7NL=M^.BL0.M1X8L_
7NL=M^.BL0.MQj
lSystem.Resources.ResourceReader, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089#System.Resources.RuntimeResourceSet
hSystem.Drawing.Bitmap, System.Drawing, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3aPADPADh
QSystem.Drawing, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a
System.Drawing.Bitmap
IDATx^|
O8*c-I
q%{2qv
sf68t$
._99x}
~_nxt8KK
*R%z7Z
q@x8>]
D{Ks$bu
bvjgV
Ou 5D,
mfWz9?
~O_1_=
p(r&+!
Pb!8"h
[{O)qf
5Jhrlz<,
hO")rs
s|&nj'
iA+A@(
*K>_:l
U!,!4x
l{I~x-w
%JweZw
6QA5FU
;ZLCb\
rDh@h(/
/bgN1X
CFnSEv
9kU_!iY#So^
.o*7[E
I'f?|;
2!\7wy}
ATKB&;qK
Nq"MI~\
^9gaV{
vl-|\!
\EyQQe,I63
I~":o[
3B,2_\
?/q?*J
:_1 [$T
MM@="{!
QZ`[ut
V8(m~-i
?4>6Ep
nOj}8qt
}vp<cH"c
PU$NYz>
<7=Oq(
LC$%J1%
sO?m|w
{:O;[G
6?RUZ<5
R9Yq9=d
{)^%VW
::7m?AN
\9i{*~M
eU]4/v}
m2B|}Ym
%BPt4q)u
!Y&@OL
SWj>p&%l
id[j(m
Q]{|gR
#[]%T"
ygg\+e?=[6
j|{LF&
3/<*")]
DIJ"\A
9^1fxnN
3cX\KE
zjemmy
A&@Y{15dh
./o{Y?/|
vwCnv^
Nbf)a`
LfAQ0J*7
YtMD4X
79bM`r
yEws.C
G&G5zCt
|><uzQu
NlI?.[
r7x5V'
\5a[8?
mcKwJ]y
D",K&5
w?JN/k
6w3y}`
(%(II%
gkw>U:
n*Jb7gSB
@:%NB|
6m;w?o
FIr$^8;G
0_zuO!
Njo4[R
|6qt>[
c0~gMNI2
|.^2?y#<
rvF"_x
F0>`%F
V|$q&p
nsBh K
AJn*VN
bN)K6/
St;0YP!}u{O
B|@&|r%
6Hl7*7
0wH}G
3%s_r8
&L1Cm&
F)/~U|
Q&@-WR
6%o|{(
-Oj44m
9OI\XG
5mZWl;
=\R[/Pq
5*)G?.
&;VIlh
i@JB6RW
=yd4_!
/;~_ia_
^Y9J{7P{`
mU~=LtYSr
IAQ9)L
MrOHu$
+nT3}N
xw+0P4
M:;;4;B
<<SH"R
5/b&:*
Gdv^c{
g(!hJ\u
OaK:Wf
-P2Hs^
\3WXA,
=},xx1
GYS&]N
;09?*iL
8z7gdc
tvZ=,esT
$|(zp%
c`x5w+
{(^mLlo
~rH!+W
{A`YG8-
/+<7@
l0dmvy
nU7iiJ
vh1-_i
e#-/FQ
/X}H7u N
~EtN=kr
|MXQb7
unP;nR
(`1y<8.
"2&@sV
$JgGQgd
nJ.^)3
zqZ7sW
E4HYEOnQ,3
=~f:xw
|R40WZ
8qDR308
-x\uDi
>nv4!8
<6)?X^Z
^>ke,Z
|BAvub_
\6]]S
\Q(psPm
rNgAi8
]W<S)*
MLoU6:
^*f|[~
"}1#'GP
tvLAF{
}M:G%DC>
x!P{I.
\?=Eqce
Us3*e4
3hi[2{H
Y-;;c3
RL`QG/>
C& {TT`<
N/lb5?
4ud5WG1
"wNdgAVs
VarStK
3m oE{
_&EI!>
;bAEQ!
X\uA\8
=)G>S(
nicTcP
+0;d{g
~Llw9
Rsr00'x
1{>;>^
tm5Sn1^
s+5L^t
^%{.X(
$w=F6#
qOf{gy
H 3#LB7
RPqtf(J
_u.w;8
3>[P!S
WQ^^ym
3"<c#I
q3UvpL
-O< (*
_v0yWK
e=#V:}
{}AV{{
of?&0O
/7su-A
mof2-_g
|qvKJm
ZT-8By5
#}&/gGogoWl^}@sR
_u>JeG
W lG>[
V6}7>0
=j*zkF
6vYeoT
opW_xt
l?3UMK[f),
D,`Q)(
Y.~MZq
{WQba?Lx>
_/?X<T|Kj
]G%OUG
wVt\_R
N=f(yh
qdmGc@
@Y`#*@
~,0m5|
_b5huh[
r/0$.k
;_,[|M
w39moJI
7[}{.<R__n!y
=g-2{A
)&TYJ
Nk_\:%
^91"qf
$_>Dax
VnfN_?
`#Bz4&TF
9Dx-A:;[
oRQ-Xr
0A]x(e9
du/6Pt
!25}yS
s#Kb8K
!(!Gz:
h)": zv
K{Rh+7
Dg(j`C
"[|gV*k
|0?P;`X
dOjJ\?x
>L8]<w
?<b)y|N1a[I
_q2r^g!
%h`#t+
/T-L7\V
3pX**G
{e~J?s
89Ly2X
1!XR2h
(N#[rw
N2ZUA+
Y47WjL$
9+a+TIm
"oq<'W
5|}9Mq
mWrM'K
AR,`(:b
T@nwHK
w;?W^'
Km=m~)
xpLx~z<t,
1 UZH
jLXDo^~
z+?:zL
jo5~NS)}
RQ!nSY"X5\
5CGO;
by*)K_`
7{&.o|
[|h}La
i}]??K:L
_k4?Y( C
%f-Ha\
O\#}gM
Q\|FbM
qVfPKBy
?q)Wd:
^FV|4u
55!I}m
/]RCI;
:Bcs(EP<8r
#&^$/-CwT
[@_$hA
?> ?qL
+.ZvC31
<{Ia1;
YplO~A
\)|8<j9
X7\'hk
7HyyY^
o#I}w[
=xD\,XY~
Ja@T#$
[bq*t>f
Y<3[7db[
9PDq)[
IdW}:W
'lAdKn
Lt^F!r
V_-VGZ
a=Yq|u
%>)O~</
yZ0wQ~
>{%h8^
,&|c9PB
y QJ+(I*
JGC[}v
#=^@'K1E]
=Wu*3p8
!gwN.
wc>{pu
Zr^=f>
l4/===<
o~Ly-*q
T'Bwie
_/Il0Rh
T@E!JP
=!G|d9
Af)1)h
!k|e0(D
el<t6
k$Vi%U
1Q?4o/
|ebx|:
.f:7[e
pApr( !
NQHCQ%
$~|"_{TA
o~m//U
WU2YK8t
81cmo:
I]XQ'L:
!k 0V--E
i~gMyv
?[E@~i
|jC,?t
DLC4&Dk
vKN{M8(ei2*s06<6$**'Bx
do@";{
60)"(9
>;Dy+(5`O(
+'B&fA
Uzj;4n
-zEb)a
*"CdGX~
LZ9A1(
pts6}x
x(d(Rd0
<{o~}go
~Y\wL2MLf
&<7] \
gnGUtk
9SnuU<
+H0D@n
.8U_W3
~w0{7
x1Isg\J
hsRIxr EG
/y%Wgn
:yC9oC
9U*:3E
n{,[r%
Ouxu)T(
$Jm[%[
\3,Xi^6
4+r_W,
K!($CE3
-;\6+%}
DT nK$
bN)F(b
^2M[}Mok
b47O X
z_E-r&
z*m+k'
4>2i\6k
jR)vYr
4/Xz]\
y3jr~*
_t8-ucl
;vEATT
>)&X Z
`IQ'*$Hh
jYWG{h{aS
IYgRdU
U(A$%72
Y#X4p
h{0PHN!
`DaA:;
C}SppL>
<)uT3
=IivWM
O./3~i
85_A:;8
-ERu2/
T#fcT=w]
dN7-?W
KL0@_0K
oi4(t9fg'
Upx(.
J__/"m
19C`*A
7ef#yH
'jp<db8
J~Y'uF
MG|k%M
8LTGJ'r
${ c)
kOi)a[
&Dx860
7N^`eWaB
tx`\:Ds
;4#970
1B;l-@
oKqK'3
b$ULOS
SP]xaA:
=*`rpA
c_7m(5
<^<b9
|:1UaWK
u5q("*
Qdh&~8
'x_*xP:
0SSs+R
L_ZQ&AYJm
,]$D]MD
`OS@#VX<tIp=
$](q5u
{4Dp/4
(^Jv51
1fN>6+(*
V.DgAz8
yPa"c~L
2Bx}v3
BaaD2F1r
L,pRHwW3*
<}u%tUx
ZpYvra
hdfib2
[O`zu'
C%yt&V
Dg(- F?
Rxn\: q*
kVh!)k
>)<Srv
19Hz0
+o;4.\o
\2rUdh
j<C5]>f
9qW\?ww
6,\aU
QB88oK
^!np>r
O6-s08U
3zij
UcJw7uC
:k\LbofW
ffb[/_
t|(XX
6L-(4}o
qW{cuL
Z==+@$
n<s+oS
?e)d\_=
]b@x)({
u6*'\6
Wb-VV-
IDATl<
PFKH0_
W52g{l
Xc<e3|
YNy/WN
h=}J.9
|uV'io
x"C $-
wxb{nR
'Rm/yP
csdtsS0]V.
%vHO_=
c}PtB(
S7`?fw
z(ge<#
+=sj4
hgc@Z{
Ig1;/D
D4t(q[
31iPFBp
w<~8,fH
] lPGc
T\r\T4
_tp (Q
:.9u.W
-q[%giHZ
MY(4]g1;
fkT=v+Xw9
I@)(@D
ePjBx.
$1XtO>
U!c$MJ
-x4{H
XL#Rja
tU]5o-
cn+}ne]
-fUIk1
}}FeFrX
nj'GaQa
x"&zd-G
):d#qky
l TQ:
d.UDStI
A!5(\:\
&}(LvA
pbxV1B
*JI\m
?U3$W#d
;gmTzn>
IHcJ^g
2=BE9(
pvo+-U
)?.>g9hg
Zt"&ws
9oA>k#
v5u*fV=_8(
_o96m/
gBwkV|2\
7P)}/9
`3)Xl*N
jZw3NR}
_3SLMr-v
+R34ckK
i_r9|P
d3(J:Ztx
tJg5QT\.
fi~R$]G
xwzU+/
WK[E-]o
U6oI~Va
s\l(XZ@
DQ(z36W
Sy=g),
p~/O,
NQ['oX
>+nm,b
mb>l5;
IpQD[W
y!gPw`@
xaF*|~
$uC3uB
1i1J['
+l=/T4
bK\LC1{i
j~FUj=
:BQvT
#=7/-e
ER6ZaAF
X;.]Jt
0p@|MP
7Iy/_`
rqJT%V
{!P.gdgz
-:N#(D
QI*-qU
;KN98x
xWdAk-
~Q0R/|
l.E>{
:a\.u]\<
Up{2O3
KgI^gp
-&'/}x=
o%>U`F_&
)<U*J
I*n2)n
E#]SFX
!_*6J5
PBN;E[
;)cP-s
&IM;Z?N
N9f7gO
2RA1<J
TSVr>E}q
Ko\5Z6N
%d4rPGi
w?j;`C
\V(k?:'
Q*k&kak!
|-,,$,
_:\".&[k
odAO E
5U*pK9
eMO[*_
,p&lul
r~9gh]Vf
wMo]|1
fW~Lm=r
'GiWN<
C\HN``P
O.iot)jU
7J*6)
^y%WB}
XY#G|2
~&h^uE
q9as&/
sjz7my
Q5dnM1
Xm:7j;
8Bud!GN
aK;!K{
H)>P!J
(FVx(9
!E]+JZ
)VQD*V
9M3?qP
zTl.#OW
$Kms2co
C+;Z_%ix7
d_U@6-
.Bs(}yqP
I~{ek9
2co>>s
cT;t^4
i?qLvs
T'}|8n
8{d+c#
e!rr'@
o6.29R~|
m?DH(:
Ozt)ck
;jo81=
S-1/k=
%'?0i8
!H'T:RY#<
8Ur:O)
/"NlV#
k,]%7}
?-QsiZ
6L)pTZ
" Bq9
,([@V-a
jzD~^<
X(Y-iR
\9Ye}3u7A
\t#$im
9SO=WBDl
_^37$D.'
ipdO;)p^H
N.f'sQ
oi9\3e+q
(~^g_(
Rl:E>0KY3(
bSLr3e
ka-1./?d[
OZR]LNy
p$~NOi?
N?Sv+
=/#=T|Q
3OES]L
Kf^H,{c
2!ePDGE
e5\'v<
r9PZ/C
KUhtza
F[WEm}i
4Wb{G7$\
CQo_.]
#;tzM{
>Cy@&(
TYW AX
HVxHJ`)$
"@+FY"=Y]
TX,IFY
%YC7U_
:<?F!=
8<k=RN
`3D|xOl2
:VE>k
=6s.m&
4VF ia
*|9\t~
#m@,T&q
+.jW\
Nqs[^Z
y8gnz{
=)ZO#|V{
RwSpR-
_HzAm
B!U>>%XarjM~
`=1sV0
DgYnMhyw
|Jx/f}
3C}6gz)
Bzm8,l
#}5Fw1
(&Rmg#Y
pZHvop
b!4-!v
D6uw3p
k$+X<K5@1
2Iq)}%e
_'McJ_
7"\%P+bx
|'RYX!
3[X^#.
~u|;_ls#4 n
YK$g[\
009:Dwx
)~.PW
JLW(A|%
E'PA}R
PFAivJ
wS8c),rj
$;AP]e
XgJ9/Y
0ey(:
h&,*GS
_MDGq6
RYPyGS
fc3N[g
>vK!%J
A9QJD%
.]olb
xVx S0
P-0'@D
LC%9?Pcy
]NpK K
;kh:GB
r:CY?I
ROC'Ow>M
3:\vgB9
C2-[Iq
]!cda~
<7^l<Db
.!G|1`i`
YOtkLd
&agDUp
'#+|+?
q7'S3{
S! !eyrU\{
|o1iUZ
o)9^[`ca
xxiJ4
xWFU~HW
{=`F_k(c
QYlx=B
.xct1J0B
u;u0$<
ChL`cI
YL c9F %W
CUPb0k
,$|)Yt
x+[%_I
UEZ.-X
FX*%o0
3if<Dg~
Wjr)<'t
}CJNl(
{+/[2Kl
QSystem.Drawing, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a
System.Drawing.Bitmap
IDATx^
&qm$Lg
RY13kEE/r:
cJ#~t)
fu?nDQ
%zzb,I
B6kVZ2#L
?G|Yff&
mG-h9hBa
M&u?SU
BS`{>?
K@7t'iO
A**KHCw]!
0t>y>r
K nD5e
eB:k;k
J-*AfJ
Xud9.?
\VxW#e
$2;zt\5I
{U&U_*
j~a~BE
}E\|t^
kBV^&T
MOt8\.
tH"3`8
[9Th6l
:.ZT'<
CfmH2g
&N|z)W* ndRCc
MMRzp=eT
+GZ'{?G
lQ"-pF
MM&bDokDt
nV2+ht
4F:Ut6
GlqvDaD<
i}8+$;?x1
]I:w'@
"HK3EZ
@xO[Dt
CL6RB9
%^jU_D
NKR"1<
UA`Wg${
O8{'YE
K)W99:KkfEM
WH1kZL
Rtof3b
^x?W=A
tvFH;'
,N 6EF
$<NVCR
4ljI\Ib^L
X!1!8x
rRs)['g
>Kkyi9L*
};=TlU
Ex\8ZL
n5ePC[eP3
>&}@&I
~][ORA
Xh;SE6
k5e$%"h
zb=t8!~
W._BzvH
Rcd,4A
M#ML_;]L
bvl'@sV
>_3m$
!m>7FC
.*9U@Q
-r"w#u
tLu<?V
A(*h@VB
s=3??
g(q|jK
h`G[3<
}zv*IUn
YD[R}sXu
;0`I?(
zx9Hw
TV~&KL
$tMKx7pI
((z7^4
"(6wj\
=Bg.DVZN
hv.)g(
3{!}2i
a=5E|L
\d"4#6
f., 8Cl
=kL9e#
m%'D>'
Y?E,7I
9\F6!'Gd
mJ%'J'5
d{+Lvc
g1<Dv?
uf&LBh
fH,^G
oX6X!,
CtS^3m
%/$4WG
wApE~c@
_bTEHt
a8x.Wy
YA?#+x"
Y\<^A
<^Oh./
;Hhji[
H9~S)"6
W!sE{!J
T(h[A0
~XB~96
Dr1!s)
)h0x'L,
N.3aa5
1azdnaJa
FHth!d
_E'YWo!
:Htm'~sW$
DOxLpG
IEQjJI
Lo+],w
A;?Obc
H9vSuJ
h4&~4
bbMZ4C
1ZWZ'o|8&T
3([YGj
0Dji)vVD
FT<-u]
h#X'0(.
t#L,d?
cc,9k^9
vcp79U
as5H=
&$`xg3
+f8+9z"
{!4}p]
0i&V[g
R`9Ka"
e~G`fI
&GIDATu
SQGWFu
C=q)JHa
;pZ4{:
ei3C>9
)`'~'
U0-&fh
Jj,$~zF
)8&&=5
sx[}`1
tn]h~"
#DLfj\CA
mDYtWnN
7G881s
=}sU{
bNJ!pF
0mG9W{9O
&_NMxgZ
@>W'Q(
D4$y7tL
#2r?vQ
uaeR~3
FPNpY`Lh
=A0W@B
zR{}$`{9#
^[PW0E
_CorExeMain
mscoree.dll
xxxxxxxxx
xxxxxxxxx
xxxxxxxxx
xxxxxxxxx
xxxxxxxxx
xxxxxxxxx
xxxxxxxxx
xxxxxxxxx
xxxxxxxxx
wwwwwwwwwp
<?xml version="1.0" encoding="UTF-8" standalone="yes"?>
<assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0">
<assemblyIdentity version="1.0.0.0" name="MyApplication.app"/>
<trustInfo xmlns="urn:schemas-microsoft-com:asm.v2">
<security>
<requestedPrivileges xmlns="urn:schemas-microsoft-com:asm.v3">
<requestedExecutionLevel level="asInvoker" uiAccess="false"/>
</requestedPrivileges>
</security>
</trustInfo>
</assembly>
http://{0}:7571/IndicatorStates.json
Qupla.IndicatorServer.TrayClient.Industury
Stated
hostName
Unsupported type [
MainWindow.xaml
Client exception
4F456A5A57^69676B
Qupla.IndicatorServer.TrayClient
TrayIcon.ico
G4D54C7D48A57E47Y87HB4
/PhSJY;component/mainwindow.xaml
Qupla.IndicatorServer.TrayClient.Properties.Resources
tana_logo_new
mainwindow.baml
MSBAML
Stated
tana_logo_new
VS_VERSION_INFO
VarFileInfo
Translation
StringFileInfo
000004b0
Comments
IndicatorServer
CompanyName
FileDescription
TrayClient
FileVersion
1.0.0.0
InternalName
PhSJY.exe
LegalCopyright
Copyright
Qupla
LegalTrademarks
OriginalFilename
PhSJY.exe
ProductName
TrayClient
ProductVersion
1.0.0.0
Assembly Version
1.0.0.0
Antivirus Signature
Bkav W32.AIDetectNet.01
Lionic Clean
Elastic malicious (high confidence)
MicroWorld-eScan Gen:Variant.Lazy.258279
ClamAV Clean
CMC Clean
CAT-QuickHeal Clean
McAfee Clean
Cylance Unsafe
Zillya Clean
Sangfor Clean
K7AntiVirus Trojan ( 005690671 )
BitDefender Gen:Variant.Lazy.258279
K7GW Clean
Cybereason malicious.9d93d7
Baidu Clean
VirIT Clean
Cyren W32/MSIL_Agent.EGB.gen!Eldorado
Symantec Scr.Malcode!gdn34
tehtris Clean
ESET-NOD32 a variant of MSIL/Kryptik.AGXD
APEX Malicious
Paloalto Clean
Cynet Malicious (score: 100)
Kaspersky HEUR:Backdoor.MSIL.Androm.gen
Alibaba Clean
NANO-Antivirus Clean
ViRobot Clean
Rising Clean
Ad-Aware Gen:Variant.Lazy.258279
Sophos Troj/Tesla-BZR
Comodo Clean
F-Secure Clean
DrWeb Trojan.PackedNET.738
VIPRE Clean
TrendMicro Clean
McAfee-GW-Edition Clean
Trapmine suspicious.low.ml.score
FireEye Gen:Variant.Lazy.258279
Emsisoft Gen:Variant.Lazy.258279 (B)
Ikarus Clean
GData Gen:Variant.Lazy.258279
Jiangmin Clean
Webroot Clean
Avira Clean
MAX malware (ai score=89)
Antiy-AVL Clean
Kingsoft Clean
Gridinsoft Clean
Arcabit Trojan.Lazy.D3F0E7
SUPERAntiSpyware Clean
ZoneAlarm Clean
Microsoft Trojan:Win32/Sabsik.FL.B!ml
Google Detected
AhnLab-V3 Trojan/Win.PowerShell.R532008
Acronis Clean
BitDefenderTheta Clean
ALYac Gen:Variant.Lazy.258279
TACHYON Clean
VBA32 Clean
Malwarebytes Malware.AI.3847791317
Panda Clean
Zoner Clean
TrendMicro-HouseCall Clean
Tencent Clean
Yandex Clean
SentinelOne Static AI - Suspicious PE
MaxSecure Trojan.Malware.300983.susgen
Fortinet MSIL/Kryptik.AGWM!tr
AVG Win32:PWSX-gen [Trj]
Avast Win32:PWSX-gen [Trj]
CrowdStrike win/malicious_confidence_90% (W)
No IRMA results available.