Static | ZeroBOX

PE Compile Time

2023-03-15 17:34:34

PE Imphash

f34d5f2d4577ed6d9ceec516c1f5a744

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00002000 0x000b8e64 0x000b9000 7.85211531343
.rsrc 0x000bc000 0x000005b8 0x00000600 4.11444176854
.reloc 0x000be000 0x0000000c 0x00000200 0.101910425663

Resources

Name Offset Size Language Sub-language File type
RT_VERSION 0x000bc090 0x00000328 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_MANIFEST 0x000bc3c8 0x000001ea LANG_NEUTRAL SUBLANG_NEUTRAL XML 1.0 document, UTF-8 Unicode (with BOM) text, with CRLF line terminators

Imports

Library mscoree.dll:
0x402000 _CorExeMain

!This program cannot be run in DOS mode.
`.rsrc
@.reloc
 .s/
d&s*
 `s/
E1s*
E1s*
v4.0.30319
#Strings
columnHeader10
columnHeader11
List`1
Color1
columnHeader12
Microsoft.Win32
ReadInt32
ToInt32
Dictionary`2
Color2
UInt64
columnHeader5
UInt16
ReadInt16
columnHeader6
get_UTF8
columnHeader8
columnHeader9
<Module>
ResourceDA
VALIDATED
ProductID
AddCMD
GTA_PASSWORD
PrixIG
WAITING
ErrorMSG
get_CH
get_DH
get_ASCII
System.IO
get_SONAR
get_HVR
SetSTAT
GTA_PORT
GTA_HOST
value__
UnCleanData
GAdminLib
mscorlib
textBoxBomb
get_radarpic
System.Collections.Generic
charMapLoad
get_DarkRed
set_Enabled
Featured
IsConnected
ReadToEnd
RemovAllValidatedCommand
GetSelectedCommand
ValidateCommand
RemoveCommand
GigCommand
RemoveAllCommand
command
Friend
friend
Append
set_Method
method
_password
Replace
set_AutoScaleMode
CompressionMode
opcode
Garage
SendMessage
GigMessage
message
EndInvoke
BeginInvoke
IDisposable
set_Visible
AddVehicle
GigVehicle
RuntimeTypeHandle
GetTypeFromHandle
get_duopule
FontStyle
StartGame
set_Name
nickname
GTAUsername
username
Firstname
get_Lime
DateTime
Piscine
set_Multiline
ProtocolType
GProductType
GetType
SocketType
set_ContentType
get_Culture
set_Culture
resourceCulture
ButtonBase
TextBoxBase
FlagFalse
WebResponse
GetResponse
Dispose
AddHouse
GigHouse
LogDate
RegistrationDate
ProductDate
Create
addMessageDelegate
MulticastDelegate
EditorBrowsableState
get_White
STAThreadAttribute
CompilerGeneratedAttribute
GuidAttribute
GeneratedCodeAttribute
DebuggerNonUserCodeAttribute
DebuggableAttribute
EditorBrowsableAttribute
ComVisibleAttribute
AssemblyTitleAttribute
AssemblyTrademarkAttribute
TargetFrameworkAttribute
AssemblyFileVersionAttribute
AssemblyConfigurationAttribute
AssemblyDescriptionAttribute
CompilationRelaxationsAttribute
AssemblyProductAttribute
AssemblyCopyrightAttribute
AssemblyCompanyAttribute
RuntimeCompatibilityAttribute
ReadByte
ToByte
SetValue
Recieve
set_KeepAlive
Remove
sYC.exe
set_Size
labelSize
set_AutoSize
set_ClientSize
textBoxSize
Initialize
set_Tag
Encoding
System.Runtime.Versioning
Tuning
ToString
GetString
disposing
System.Drawing
TopTenRich
MD5Hash
ComputeHash
get_StartupPath
GetFolderPath
set_Width
get_Length
GetLength
set_ContentLength
AsyncCallback
callback
add_Tick
timer_Tick
add_Click
buttonStart_Click
textBoxTotal
System.ComponentModel
ContactEmail
ContainerControl
UserControl
ProdCtrl
GetResponseStream
GZipStream
GetRequestStream
MemoryStream
Program
ListViewSubItem
ListViewItem
System
HashAlgorithm
Random
ReceiveFrom
resourceMan
TimeSpan
AccessToken
set_TextAlign
Jardin
MessageBoxIcon
System.IO.Compression
set_AutomaticDecompression
Application
set_Location
System.Globalization
Faction
GigTransaction
System.Reflection
ControlCollection
ListViewSubItemCollection
Option
Exception
Description
GigWeapon
get_Button
pattern
mapBtn
add_MouseDown
button_MouseDown
SendTo
get_Cfo
CultureInfo
GetCharInfo
GetUserInfo
GetServerInfo
CommunityInfo
GarageMap
WallMap
DepotMap
Bitmap
TimeStamp
timestamp
ReadChar
CreateChar
mapChar
InvokeMember
ColumnHeader
StreamReader
TextReader
BinaryReader
StringBuilder
SpecialFolder
Sender
sender
Binder
get_ResourceManager
ComponentResourceManager
MouseEventHandler
System.CodeDom.Compiler
IContainer
AddUser
FindUser
RemoveUser
GigUser
CurrentUser
AcceptUser
ModifyUser
GCharacter
BinaryWriter
GIGDSplitter
NLSplitter
SPSplitter
Receiver
GigServer
set_ForeColor
get_BackColor
set_BackColor
set_UseVisualStyleBackColor
.cctor
Moderateur
Administrateur
Utilisateur
Directeur
System.Diagnostics
GetCommands
GetFriends
get_Milliseconds
DecompressionMethods
Places
Pieces
System.Runtime.InteropServices
System.Runtime.CompilerServices
System.Resources
GAdminLib.Form1.resources
GAdminLib.ResourceDA.resources
GAdminLib.Controls.ProdCtrl.resources
GAdminLib.Properties.Resources.resources
DebuggingModes
CleanMessages
GetMessages
GAdminLib.Properties
GIGRoles
EnableVisualStyles
WriteAllLines
Usines
GetExportedTypes
AddPictures
ModifyPictures
Voitures
GetHostAddresses
ReadBytes
GetBytes
BindingFlags
GetLogs
MouseEventArgs
GAdminLib.Controls
get_Controls
get_SubItems
System.Windows.Forms
Contains
Admins
set_AutoScaleDimensions
System.Text.RegularExpressions
CleanNotifications
GetNotifications
CleanTransactions
GetTransactions
RegexOptions
Avions
Maisons
MouseButtons
mapButtons
MessageBoxButtons
ReadChars
GetChars
RemoveUsers
GetAllUsers
Servers
TopTenPlayers
NumberPlayers
Process
IPAddress
address
DeCompress
GetProducts
System.Net.Sockets
results
components
GFriendRequests
GetFriendRequests
Exists
CommandStatus
Concat
Subtract
GetObject
object
GProduct
AddProduct
RemoveProduct
ModifyProduct
System.Net
qSocket
GraphicsUnit
get_Default
SetCompatibleTextRenderingDefault
IAsyncResult
DialogResult
result
set_UserAgent
GigClient
HorizontalAlignment
ContentAlignment
Environment
InitializeComponent
get_Transparent
Content
IPEndPoint
set_Font
labelBombCount
bombCount
GetBombAroundCount
labelTotalCount
unitCount
_count
MyAccount
Amount
set_Accept
buttonStart
Restart
Convert
HttpWebRequest
addMessageToList
set_Timeout
set_SendTimeout
set_ReceiveTimeout
Logout
SuspendLayout
ResumeLayout
PerformLayout
System.Text
get_Text
set_Text
LogText
ReadAllText
WriteAllText
get_Now
get_Snow
FromHex
set_TabIndex
MessageBox
TextBox
Bateaux
PayDay
get_Gray
ToArray
ToCharArray
OpenSubKey
ContainsKey
RegistryKey
Notify
System.Security.Cryptography
get_Assembly
AddressFamily
set_ReadOnly
RCONQuery
Category
GIGNewsEntry
Registry
op_Equality
op_Inequality
Popularity
Quantity
set_Proxy
IWebProxy
AddBizz
WrapNonExceptionThrows
GAdminLib
Microsoft
Copyright
Microsoft 2014
$aac1968b-2fe5-4214-a6a8-60393929da68
1.0.0.0
.NETFramework,Version=v4.0
FrameworkDisplayName
.NET Framework 4
3System.Resources.Tools.StronglyTypedResourceBuilder
16.0.0.0
lSystem.Resources.ResourceReader, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089#System.Resources.RuntimeResourceSet
PADPADP
lSystem.Resources.ResourceReader, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089#System.Resources.RuntimeResourceSet
PADPADP
lSystem.Resources.ResourceReader, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089#System.Resources.RuntimeResourceSet
hSystem.Drawing.Bitmap, System.Drawing, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3aPADPAD
QSystem.Drawing, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a
System.Drawing.Bitmap
IDATx^T}
^<=6;T
=ZrU2.
p?W0`O
osNtkV|7
6?R1G
{3k6?h%
X2bex
yX!z_3
l#<v8L
nOns!(
Mbglm]
.3`LU!F
z(NwMgZ
8I8n!s5
x98?;(n
98kuWr
a~htN<
T H)o2S
u7kKwEb-w
u.~Xx;
?F0KyCMv
PcP'te
4^Gh5#
 ^n>[$l
|Rt,<(a
-=vN:erRQ
h$2>b]{
VJE6V$i
CxGa/B3
R,ZA,Z
&w_n9U}
$'G!d1*
;U&5o~
7m1)>or
Ro/*{.
35jx*
vh:eRCY
SD!47%
W3hx]#_
3>S9&1
BiYbC^
g*">M,
QNa]%#(
8MdHg(
Ej5z75
p7zGdOC
`rw<{z
J_u/cB
|Ww#2D
Iw+.+#
?gFMZr>
}(WnfS
k`i5Z?/s
Nh2eHB
|LZk35
|h0_INm
(2FS)4_U
crWf&!
MW_xeR
Nxj@&{
\HYy4=}W
E!tb"1
7DnaP5
=dv4-F
wq5-1P
mY0SZ3
Z`sOph
OLOIr5
d3|QiV"
]rN/Os
.Z^K,+
gU+l/3
{E\sb0v
%jLa4Z]
~NZ7{S
k0=h@
PX,pUz
:=NH0y$
:woo='a
cHe!0@
S9\Kxa
7'v^6X
u=p?0w)3
7Syl-U
t|5q b
&UcyLf
'kKs=)
g`cBh3q<
~JNEWy=
5YSfO7n
/sx'e.
2]h`g![Id
$6C,"Z
+/!=+(
CNsDQv
=u6i.5a
^nzps7I
l5pvE_
_Twx9O
Qia>}O
%:wwo='v/a}
Aw5_D4
cY='7?
S/~qj1
$hE*)w
<Y['Pq
9`Xt>y
hn;%qu
'NT<<~
d\;|)r
U7ht@\
+VfV}#
VGsOaS
iJ(b,]
7~;$2Q
47ZWAV
}Zys;3
Hb|p/G
+k.6[roY
nNIC_.+
1Mouhu
6-MNy:
]'|6`S>
)7Hqe9
Pk:A
=Fkgtj`S^y
'^MXh9
-&vY):
Kh`gG6
FYy6pZ
d-/$Vg
im:]%Z
C[y\>{
/PP^Ls
O~Bk=2
&k4$FfjI
8Wc(i)0LD+
];~E)9;f
mbxXe;
'|<13d
TK!7St
QA+#{^
rZN!Pygh
?x"Qt5
vjtE's
@_{5z^
d=Z3gD
(lC.;5:~
c="GuH
/\SGG-JE
FK^CC8b
s)X]3By
_at7Vj/
;mJj}v
Y]'[?>
mOeTu\
ADa3Zi
CgT^d=
3<[Ga:
YaAL5`
~nynn~
?1%!c&
|oo[`O
b0w^Q+
1wDYR^
J}f0Cs
!dIX]f
@UAa3/
c,Pk=~a
Z+Jtk{
f=66jJ
:?HAan7??o
A)R4yh
^ W77=Vl
zWJZr
jE[+$_7
3%SONn=t
%C9bUF
=8My,Vd
kO,nx=
TEC5n_!
HfQVi;/
8wzx[
4=5OsG
)(d?.w
?^XYa%)
=bUv";
DP{]\Z
S2NlE=
C(vAWj
:C6-ry
P@N`26
b'n{xA
grb>t=
'w<O:u
*?z|g1
Bg79zEf
Fs#\O
,J2ivK
k2>E@)
`2VXa}
yWWM%I1
-UW:<^17q
!0/7ZS
7:6.UY
$6Zt]>
l{CqL=
0vHCH\d
Rl<'C$
twtb C
?T"[>.
=e7yjvc:
.(Ts6
K`45SJh
hYE|E7
{OFZIw
Ga:,5fZ
?7\SW97
8K~`v7
qQNpm@~
M9,0@N
/J*u4,%N
~Q4g_F
rD2-f1
Xkp3B;
1CRY<
~e{Lm7
^#^_&W~
3%,XhB
(w+^Ye
nC[9a_
s\JwfMzh
mcL-@>
{6R_oi
".VrXl
V4f*#;lq
5Fy1!*
{nr:r]\
gF)"|r|L
\9p\XP'
Q`(p
3`5 yp
ekyS1`
iXUcKs
7Sw~.E
z91h:m
iqu3rPT
]`<.[lz
/2%MPL
V=}<l_
4BIz=-F
QoJ=>
9}j,vo
~-4Ct#
[/1(=p
3(Jut,
+)EXgl
iqj5V<
M4yg=
Cu1Vj=XcL
+<l2<j
KXd%H0T
OWxv&pd
(<OF'K
1]WU,~p
\Ep'6L
`Qlf.|r
>>Ei0G
_B2j6i`d
e">=:q
It-]pg
pR(Fh(
6[?J'c
?kVm=|iL
$}s"d6
~cC3~U
jkBJ>T
5&s&$.
{\y+2'
V''fml,
%Uv#LR
JKrjwpE
pPA9vSP
"L;D`4V
;muFs]
Xqgq?C
k?:86O
{`'||M
XY/1kG
jOr]!
N$;r=T
-'.|&U
+Kn!^T
7x8GQ\l'
r+,t3m
u>Ne_;}
e=6=}|
KEe<xH
??K/"9
E_Bi"D
z?A nX]
g+PB>d
gC~?TO
eXZr
p-fu"U]
guL!_.
^l3(ew
H@hu#6
~VKJ&
KO!#B:L{
C}Y7C->
uS>VX.
8p9gsF
v"~/(~
"Q&+cCUUuau
e[o_v;
._^liz9
(:>cja
u6m~^j
**|9sE
p5/?0a
U1Ip"
#N*Gb)
~L&bE;
?owP=2
fO` |R1o
^;;Szq
xJv`q
f{30jz
"bXECp.
6`%v WN
;+Ir|
;EHXC?1
pQKk(A=R
j/giC
=F+fJ
LkLRy
+K4KmL
1\O3lM
@eZ>D:}6
.u*\=|F
H.U_[qj
-!l!^N
[]I_c>tN]
,JF[`u3
nWrV7E
O NZ;x
Vb/Rab
!Ozz,M
wom]7'c
/d:R@
.v?T8p
F}*J{6t
C*pR`
f46(!%0
[t=K?M
Qjk=q5
`Z9ccs
e.c~Xa
o/ ^EY*s
`F*>r5<>
P\)t0x
C#=m'-r
@`5ErfU
<xvC-;
21$H3O
W8]Oc/*
rd[BQ[
cVc9h;
PEr02
*Z<9;C
-/3n>i5}
F,QrIp
_oP#(&
WEUFK-gL
sw|'NK<
yivHeq
$]>6\'U'
/n}mKo1
57>DNY
,]GF\O_
UlU1@8
.\?<Jb}
J/4h$1
NK?=JL
[F_s,1-
o+SmYX
x+n^dZ
?o4hTs
c9K|W-
8k,>MU
P0qYU4
'7/^1@`
H/D+Hn*
qI[n++6
UDQ]gAS
Mi$~Ao*Cp_Y
xMcO?Y
HX"J()
:m<7wZ
3b6+:N
ppe+~
5]Bka8
~v_><2d
DmI+Yuv
KP)_*T[1;9!E
YUq-n;
i+57ovd
Ew(wSr
6s/g<=
y\yCAC/
+%)xmd
$@QJu{
+5dL.#)
8W%mdSmP:
yXDcQC
yB^Of<
|>|QSS
CC,GR?
[D2h@4
s$?v}<
!lP<}~5
V 1_S
+$X/'<
-pcMG+
77C,C`UU
%c-TL`4
DhPCK)
{2R|tT6
?9VU7lp
tij"}Sc*
Tj=U%%
NxBx:R
-X}Yql5
/9M;nE
xz"G_#
^SZARI
0gbP]|:@
}cG(]Si
?OJ{rM&
$ a.&"Z
IR;Zf
[4K=uu
VGU7L`
\!"st
;5xKLd
}W"gBz
)f{8>e3
{,a]w'
Y!g}Gf?
Zr}P61
X3e1;Uv<
:vl<zK
?.L?Ky
S*>#f
KB*$~4TK
#_O$m)
p}QP pO
q,,:b;}
RWtOwb
Z#!H[]t
Cy.[7'K'
:3wosv
8XX_H8
dJWtj/C
-Fg2&2
y~?6yYB
yMQi5^
jU5Css
]LYoZDQX
:rYShj
1'|)$zK
b")in6
!Nc^8.t
Mo<[]7|@
b4E-Td
4}4*G9S
*HqVf6
u*QVY8N
k>>s//
:Mnum(
}D+uzX%
6PkxHx
p<~!vg
Ht>^pL
"O|,-B
y#e*[VSF
cYvk?1
~GFh>t4
1NV90I
P\\.LO
Y|(k'M
e1[xj\
Q`Ia=j
BVewxN
@^5Nr>
]]{6:)
043;`Y
'coAsx
A%!;72
(q4hr9
nKz=>
$=/Lxq
@k=`+b
%&O#o`
3y4%>'
8:|-b:bV;_
ENb.B}
TH``@l
.~bNvW1
8J!fJ$
]]Z&qe
sL%5nc2
6x *a!
z7p#(p9
=p;L&0m
KpqdH
_WC^~T
nCtzX
\TZT*.
S.dH@Zt
Ja.qxh
O#U;_s
auh$~Qd
R,S+Xg
D8,Zqw
p.qxa|
x#]=J`C
_?ZqzS
yY^bzf&6@
QGG&dT
w<,_-[
@?|oH
VCN,xg
_F?StT
ir,y{B
(E1bT^
l!-7Vp
Q<L0HD1
&-<&].(
6nfRQ/
BGR2 m
}$[4Y]|
(N{n>}.|
>jBi^$
kj+hqq
Y&lc;Y
(SsIP(
=*Ab=wo
*(*N/u-
<IzRGQ
N__X?Y
?jt^H_s
6~s?z~
~,hn{%
Ozs@%O
(I@)^'
E7`XMi
W;e6d/+
C%d|XQ{
+9r%/I_
%tYR>
si9noV9
?0ZP9\
#g4~L1T
J`E99?
$K=O@$b
-!$>,x
_:H~w!
9G*Rjd
(V3DKp
7l=&;+
+=3W$3
XS>?r
r\FhP
peO1[2p
bx&vMH
[S;'U.
}Ey7o;o
ilv&}S
I6 F"T
u3gxEl
`=+Ij|!+?K
L}gJd}]y5M
UmNX1q
ij97hx|
k>4x,v
I9J[n3
tqPA5~
S}g,x9
>AG>[OlS
-U;.avT
"53)C4$
jBMJzO
|}C^x[
9F;5*sQU
nR'c.'
+L0&~71
7;3al_
ubQ9|H
$^e>$G
V3x[wc
;Pq[ZP
z$G%T~
mq?!^7
\qZsaT7|n
~/vEbx
Zl^`_V
A<7^6=
x|op&G1*
M.]q<QI-T
:}}qJb
w:I508
M*P&_a9
^7&jGP
}ESVQg'
HK 3&H
7P$u@l
jH:6Nd
-_H 7G1uy
q!shjgN
=t{2^[
?*^~{>
Zs7C,j,
to<=
{~on:w
dg;@91
iZ43xZ
*Ly-pv
nH\rD1
C!drP4S
8<C5|#G]}e
"1EXq]Z
eK_(R"m
.}Qj#Fs
/-asb^
N@wIuh
$UgY*%pF
wYer]a
d1J;"9tx^J
gL3k7tD
"Y-qBU6
VP'f\.
So~nx0
$G5?a>s$
m]yre0
{mOY++
mXbz3wx
{,2eXC
Z!Z'-Ev
A,TWFBuV
IFY5ra
T;ujsb
m|V<#
9lEp%n
:vYxgZ
Xc"%Eb
5&&=-d
x7aR-v?@2U
X"F]%l
kHL6<G-r
YUdAu5
~th8,)
8m"o+r
q{Bu0$
8u~RI^
w6Oc2G$
m[R|[{
k"<^4Mb{
@Iq")j
Otx1}g
=a.UIb"
7x|!s<
|FNc_
iaRWUs
<xdow]ir
8K<|t;
4YFRb
Q\Xu^#
h6>i>D
)%mxp]x
[_:y.W
(\+Lh
y/1RL;
!s6/5)&m
UC[M=2
M7)pqqQ
lDj}`T
%+~~r<
xODkm`
8J>Mru~
zP){#4v
A]fd"w-
Y18@9x
K](Zz!@
3TxZBw
C`M9O'
AA+goT)Z
:UK|4!%
3[V|N9
+mA<&Y=
.NB^BKuB
G&vr:_
@2lbQBR
4U+V@R
6B7lX=
d{-:p,
WRJ.W6[
?bU|1+
hs5X%n
_jjo!h9
420i&'
zS^+~T
3Ni}?pS
c=W^?Y-
knN$m
JLaeYj
:~*'3@
X,Ulyw
b<.ROM
(Y:Os[N
IJj6GY$I
KbO(v5
n^7{p"
's-:S7;~
!IB\S8
5UnRu5
gO_:($
"p_QVH=
z!#"|W
BwmNs
:>6#-b
5LXPh7
mfs2uo
o@k-pt
|i %.J
0MUDxE
O=w4m[NH
aZCW.
Yf 9)(9R
^m8X0p
WM)9;6
-wMT{M
;H;~Xc`
NAXgd!
$|N6:,'
6k:t!p
`f'!\H
0Ko'&?>
.Un"P`6
)'?{ju}
Y=<`t%{
sG0MuS
fI%ON/k
a&@IR`
At F]},
s,/szv
5U]mQd
D)Slt%
xa:Hty
Rkj=45
u?x_o
P%t/Py{
xtui3.H
]y9~sl
?\=sOZ
ONR"3F
&X7e%|
+WrRI\
d;kvt%
P-ak*_}
%3;,8\
D8IX~O
{Z]W7=
~I}(@J
=QWi<K4 TS
)W!K*A
`Uiypm
Fr*,!B
06+I*6zD
y{6HJa
tHb52$q
z4/-i{
?r_9/;~
.-hS{n
!%Tb %
`p%V4W e
f2m`ju
)/%S*u
<LW<g\
S'Z!E|
w8>><8
+ 2pK*
tb3gLP
<I,?{m
8-:2T6
-8(s?z
E;{+ONs
`ZNg_+
':T/%i
f~A4$i
f1SI7I
Dd-CN5y
^y5rwq
A'W}ks
,~q;dT
Q79v[b
I'ow.<
9$A|D
lO:u%xR
@%2,y}
]d3\;0
%:@u5A?
yQ&p)j$
&2bx+s
n#{MO+
)>vZwst
#VN0[%>|l
"l9]!5U
6}!si+J
fOxRqa2
v28dqok}
/@Frb"
0xqg,I0
F7gSj{h\
]\03uV
*G'%SF
`U}^*xU
U/o>07ea[
+jd$_[>|
yQ[Y(@t
2ONaaV
xJ4n+`
CQ$E~ +
f0HSY)RW
S,sV`.&
KXsuQu8|/b
:]a<jE2xg=
MJow5n
/4[yh(
&HOE^r
`KK@9B
t4^9
WXY?E%
S8_l_b
:6YFVK
NGn}*R!
yu 'A,
$6#^U&
aYU#PE
y(ae?t1
4RSix\
cZ4fzX<\s
%>Vyn$cS
X"3g9U
jZdark
`M)D/<5Aj&
@;6t?%R%
7Uqe?v.
mq;t)\
KwO?}Kt
^':%BB
?>!n2Y@|
em#Nwl
Plp#p"6
ut5Wb,yL
mH`;zL
qXzEci
Z16%X(S
Y}o\mXA
rr/#Bek
K9jO6{[
v)V<iy
K1,y <mb
<FZF<
0#3xLy
@dxNK
;>6lc`62hnx
T~nUpV]u
';N?j
)9[d;f
.5*^$-
YN8D(R
&1[N+h
+t}j3u
s[M]xs
>/}Gi.r
Qftg^pS
q'c=*e
_T#h]f
yaGga,
Ni9Tv\
]Y)@>m7
oo'j\
cv9dTm
+j89sd-%
6+~:4;73
%/&,-+
/'G?o
"JNhJv
j%YSM;
:\=!rs:
^pOlcT
Aa_(!"JW~
V'O/Y}or
,;}=|gz
Bv&9Ksa
pIKz +-
JtoMUO
SQ_^yhL
c>'7_V
cuzSPq(@
1>o)A!
)DI}Vs
:I%2lh
^g/s}2
LXG4$,
CAxJyi
&o}gOx
(e2i@)Z
Eg&02U
4we!9{
D)Io?pIy=
U_1[-c
4S92/.
<qy q5q
`utos&
FsU,+qS
?4:U|kF
QSystem.Drawing, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a
System.Drawing.Bitmap
www.meitu.com
%&'()*456789:CDEFGHIJSTUVWXYZcdefghijstuvwxyz
&'()*56789:CDEFGHIJSTUVWXYZcdefghijstuvwxyz
|9t&_-
IfnGR1
t?-wC5
<]immi
QSystem.Drawing, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a
System.Drawing.Bitmap
www.meitu.com
%&'()*456789:CDEFGHIJSTUVWXYZcdefghijstuvwxyz
&'()*56789:CDEFGHIJSTUVWXYZcdefghijstuvwxyz
7.x\<k
QSystem.Drawing, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a
System.Drawing.Bitmap
www.meitu.com
%&'()*456789:CDEFGHIJSTUVWXYZcdefghijstuvwxyz
&'()*56789:CDEFGHIJSTUVWXYZcdefghijstuvwxyz
)S|R)WS
QSystem.Drawing, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a
System.Drawing.Bitmap
GIF89a6
ppppphppbd{
crx`````TWlvTbiPPPPPHPPFLV[LNOGTZ@@@@@8<>?7DJ4:=00000*/8<#*-
NETSCAPE2.0
GifBuilder 0.4 by Yves Piguet
>@$ptHIc2
x!81^~
p8oYFxG'
lSystem.Resources.ResourceReader, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089#System.Resources.RuntimeResourceSet
PADPADPIrY
!This program cannot be run in DOS mode.
`.rsrc
@.reloc
lSystem.Resources.ResourceReader, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089#System.Resources.RuntimeResourceSet
PADPADP
Z^+o\-
W0DhW27tnx4
+VMIp'Y6g#L
#=Ah!c\
;A/Z,m
kb[{*;>v
lwiwlw
j/ISA:P:t
j$IPA:P/tJ
j3ISA#P9t
F-\?R*
v2.0.50727
#Strings
C2200.dll
mscorlib
System
System.Drawing
C2200.g.resources
<Module>
RuntimeHelpers
System.Runtime.CompilerServices
InitializeArray
RuntimeFieldHandle
.cctor
Object
BindingList`1
System.ComponentModel
IComparable
String
DateTime
IEnumerable`1
System.Collections.Generic
Assembly
System.Reflection
ResolveEventArgs
ISerializable
System.Runtime.Serialization
EventArgs
IEvidenceFactory
System.Security
_Assembly
System.Runtime.InteropServices
IDisposable
IEnumerable
System.Collections
AppDomain
Dictionary`2
MemoryStream
System.IO
DeflateStream
System.IO.Compression
Stream
CompressionMode
Dispose
Evidence
System.Security.Policy
set_Item
GetData
get_Name
ContainsKey
GetTypeFromHandle
RuntimeTypeHandle
Monitor
System.Threading
get_CurrentDomain
ResolveEventHandler
add_ResourceResolve
ReadAllBytes
Convert
FromBase64String
MarshalByRefObject
ToArgb
SetData
Encoding
System.Text
get_Default
UInt32
BitConverter
ToUInt32
Activator
CreateInstance
_MethodInfo
GetMethod
MethodInfo
ValueType
ToInt32
Bitmap
GZipStream
MethodBase
Replace
ICustomAttributeProvider
ResourceManager
System.Resources
Exception
Collection`1
System.Collections.ObjectModel
EndOfStreamException
IEquatable`1
ICloneable
NotSupportedException
IConvertible
GetBytes
ToDouble
ToArray
UInt64
ToUInt64
GetType
IComparable`1
StringBuilder
Append
ToString
GetExecutingAssembly
GetEntryAssembly
Concat
GetString
op_Addition
TimeSpan
op_Inequality
<PrivateImplementationDetails>
B0CFC3D6A6111A0ADCB03ACDAAE9C04533E17A5B
ToBoolean
get_Evidence
Invoke
Environment
Thread
GetMethods
GetPixel
get_Width
FromDays
GetManifestResourceNames
GetObject
GetTypes
CompilationRelaxationsAttribute
RuntimeCompatibilityAttribute
AssemblyTitleAttribute
AssemblyDescriptionAttribute
AssemblyConfigurationAttribute
AssemblyCompanyAttribute
AssemblyProductAttribute
AssemblyCopyrightAttribute
AssemblyTrademarkAttribute
ComVisibleAttribute
GuidAttribute
AssemblyFileVersionAttribute
SuppressIldasmAttribute
WrapNonExceptionThrows
Loan counselor
2006 Mercury Mariner
Twin Electronics
Twin Electronics 2022-2023
$200903e0-fa46-4f31-99b1-bd5087556610
8.3.6.3
_CorDllMain
mscoree.dll
_CorExeMain
mscoree.dll
<?xml version="1.0" encoding="UTF-8" standalone="yes"?>
<assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0">
<assemblyIdentity version="1.0.0.0" name="MyApplication.app"/>
<trustInfo xmlns="urn:schemas-microsoft-com:asm.v2">
<security>
<requestedPrivileges xmlns="urn:schemas-microsoft-com:asm.v3">
<requestedExecutionLevel level="asInvoker" uiAccess="false"/>
</requestedPrivileges>
</security>
</trustInfo>
</assembly>
\Data\AT.dat
\Data\UN.dat
\Data\
http://localhost/cl
ogrp.greedingames.com
D5XU6AQ4HBOC
ArialBlack
Arial Black
labelSize
Microsoft Sans Serif
textBoxSize
buttonStart
labelBombCount
labelTotalCount
System.Activator
CreateInstance
textBoxBomb
textBoxTotal
43666F
686E69
GAdminLib
https://client.greedingames.com/
/Connect.php
gzip, deflate
GIG_CLIENT/UserAgent 1.0
username=
&pass=
application/x-www-form-urlencoded
DENIED:
/Disconnect.php
NO TOKEN
/Answer.php
token=GETUI&username=
/Online.php
token=FINDUSR&username=
token=ADDUSR&msg=
&username=
&friend=
token=ACCUSR&username=
token=REMUSR&username=
token=SENDMSG&from=
OK:SENT
token=GETMSG&receiver=
\Data\MSG.dat
token=GETNOTIF&clean=CLEAN&username=
token=GETMSG&clean=CLEAN&receiver=
token=SHOWTRANS&action=CLEAR&AT=
token=SHOWTRANS&action=SHOW&username=
&admin=1
token=GETF&action=SHOW&AT=
token=GETCL&username=
token=GETFREQ&username=
/Admin.php
token=SHOWLOG&username=
token=SHOWCMD&cmdt=
token=GETCI&gtaun=
token=GETNOTIF&username=
token=NOTIF&notif=
token=REMCMD&sid=
&cmdt=
token=VALCMD&sid=
token=REMACMD&cmdt=
token=REMAVCMD&cmdt=
token=ADDPROD&name=
&prix=
&type=
&desc=
token=ADDPICS&pid=
&img1=
&img2=
token=REMPROD&pid=
token=MODPROD&pid=
&name=
token=MODPICS&pid=
token=ADDVEH&AT=
&color=
&color2=
&sale=
&featured=
&speed=
&fuel=
&places=
&tuning=
&prixig=
&water=
&category=
token=ADDHOU&AT=
&pieces=
&idint=
&ville=
&popularity=
&garage=
&garagemap=
&wall=
&wallmap=
&jardin=
&piscine=
token=ADDBIZ&AT=
&stock=
&depot=
&depotmap=
token=SHOWPROD&lim=
token=MODUSR&username=
&email=
&role=
token=CRECHAR&username=
&gtaun=
token=GALLUSR&page=
<GIG_DATA>
GAdminLib.ResourceDA
SOFTWARE\\SAMP
PlayerName
C:\Program Files (x86)\Rockstar Games\GTA San Andreas\samp.exe
\Rockstar Games\GTA San Andreas\samp.exe
GAdminLib.Properties.Resources
duopule
radarpic
ID Produit
Nom Produit
Quantit
Description
UsrCtrl
duopule
radarpic
3e5db528-19ff-4195-a16f-322d6d69c52e
VS_VERSION_INFO
VarFileInfo
Translation
StringFileInfo
000004b0
Comments
CompanyName
Microsoft
FileDescription
GAdminLib
FileVersion
1.0.0.0
InternalName
sYC.exe
LegalCopyright
Copyright
Microsoft 2014
LegalTrademarks
OriginalFilename
sYC.exe
ProductName
GAdminLib
ProductVersion
1.0.0.0
Assembly Version
1.0.0.0
Antivirus Signature
Bkav W32.AIDetectNet.01
Lionic Trojan.Win32.Stealer.12!c
Elastic malicious (high confidence)
MicroWorld-eScan Clean
ClamAV Clean
CMC Clean
CAT-QuickHeal Clean
ALYac Clean
Malwarebytes MachineLearning/Anomalous.95%
VIPRE Clean
Sangfor Trojan.Win32.Save.a
K7AntiVirus Clean
BitDefender Clean
K7GW Clean
CrowdStrike win/malicious_confidence_100% (W)
Baidu Clean
VirIT Clean
Cyren W32/MSIL_Kryptik.IUH.gen!Eldorado
Symantec Trojan.Gen.2
tehtris Generic.Malware
ESET-NOD32 a variant of MSIL/Kryptik.AIIT
APEX Malicious
Paloalto generic.ml
Cynet Malicious (score: 100)
Kaspersky UDS:Trojan-PSW.MSIL.Stealer.gen
Alibaba Clean
NANO-Antivirus Clean
ViRobot Clean
Rising Stealer.Agensla!8.13266 (CLOUD)
TACHYON Clean
Emsisoft Clean
F-Secure Clean
DrWeb Trojan.PackedNET.1889
Zillya Clean
TrendMicro Clean
McAfee-GW-Edition BehavesLike.Win32.Generic.bc
Trapmine malicious.high.ml.score
FireEye Generic.mg.6a0d9778f0c3c7b5
Sophos ML/PE-A
SentinelOne Static AI - Malicious PE
GData Clean
Jiangmin Clean
Webroot Clean
Avira Clean
Antiy-AVL Clean
Gridinsoft Clean
Xcitium Clean
Arcabit Clean
SUPERAntiSpyware Clean
ZoneAlarm Clean
Microsoft Trojan:Win32/Wacatac.B!ml
Google Detected
AhnLab-V3 Clean
Acronis Clean
McAfee Artemis!6A0D9778F0C3
MAX Clean
VBA32 Clean
Cylance unsafe
Panda Clean
Zoner Clean
TrendMicro-HouseCall Clean
Tencent Clean
Yandex Clean
Ikarus Clean
MaxSecure Trojan.Malware.300983.susgen
Fortinet MSIL/Kryptik.ABRS!tr
BitDefenderTheta Gen:NN.ZemsilCO.36344.Um0@aOM67Be
AVG Win32:CrypterX-gen [Trj]
Avast Win32:CrypterX-gen [Trj]
No IRMA results available.