Static | ZeroBOX

PE Compile Time

2023-04-22 15:23:27

PE Imphash

f34d5f2d4577ed6d9ceec516c1f5a744

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00002000 0x00011c24 0x00011e00 6.07688032637
.rsrc 0x00014000 0x000004ce 0x00000600 3.7268640929
.reloc 0x00016000 0x0000000c 0x00000200 0.101910425663

Resources

Name Offset Size Language Sub-language File type
RT_VERSION 0x000140a0 0x00000244 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_MANIFEST 0x000142e4 0x000001ea LANG_NEUTRAL SUBLANG_NEUTRAL XML 1.0 document, UTF-8 Unicode (with BOM) text, with CRLF line terminators

Imports

Library mscoree.dll:
0x402000 _CorExeMain

!This program cannot be run in DOS mode.
`.rsrc
@.reloc
v4.0.30319
#Strings
JTyx5qqQVhO0eVENskjkIb5C69H389lcYGgPhEcX7s3ANIp4bJDCReBr0iyBd10
X0I8fJliCmrgB82y7EJunTN10DV5TMhcZ7ratq30
PJQ7Le4LUEghEgehFb1Inr3YUCfRRE7lemy3JDcoNeyAMBi3YMMR860
M32ATO9Oc2SppZaQ3pRMyJPpgtxgilrthHIjX3R0
nF3sbldiHlrTNegCOY3AurRSGBPlcg0
1sMkOWHUVbm7SldjI3zFPu9aQnnwJHlKIDhVhyg0
UFnIfivQmKrnZe4HHepeqWU4kIToAJHEgBungp0WsjXt2GWg8YoegM6XBefA6aYK0shAGCOy0
0SR3U6M355KoTrYja879oFAd9wVQYXPgneM8BtFzrbcTvvnJKP3fa5wpJHYm891
gieF8co5pHJVpguZtexZ7248DoCdPsRNIQb1Ir91
_Closure$__1
IEnumerable`1
ThreadSafeObjectProvider`1
List`1
2RDtN08AxLv10wVuO9Bk96HtMYkNPZLJWOWuX0WPsbuwPdjOfYIB7DhrwJQpah1
WeuZTxEmd0ghI1Jkz411RktKrZZaxPbSg0cMA3nDHv7YraHpjzfeAAnwr4txNk1
RifUxoxxIZAlXb2h3rxQNbdYNItdClSNkepDXM8AlNYHWwEpos0jWJKn256ldnLbzPjD533w1
Microsoft.Win32
UInt32
ReadInt32
ToInt32
hRER8582bJ3S09ShCrsUB2Ty7PXMU82
Y9Wh1uWCMc6EjolZX1qEyO2
Func`2
Jt78haGiPntQVylUyThWjZbJ6lqhTh4JfWNwBof2
hgkVcX4L2lNK74cBjAQNg8dGANWk9p2
WwUyEStxI0mRGjWY1Z2tus1Qn1qGto04XqakHm13
ffi014omF126c1m0wOvwPkddyRKDVNZNlKca4cD3
qo7AMvyf0hnwFBa7zQpaWx89gKMbAP3
X7qeVsMmBAATNHsJy32GrcmczaFGWR3
sSYYiFOgjLdupC9wv7kL9x0JYI9nltN7CfdGp7zKxBeGPpPigNiEFc453j7biS3
uPxN5X7o0THXP0lKxEiP1j8FXrdSwf3
ToIXoGFKnC0Le7R0lqGhul3
ryg3Pe8RRPLuFQZtEkQrOjzmZXTAWo3
wZNM5PeHPdAprtSHhG7Wey5h3GOPmf2DAm87KJkabOaDEwAK8RWRy1EwwSMgzo3
x5Rfaj8mIL04lxRGyCMUK9GUQWNcns3
FPEhqJmXwuriMFlPtGF26Xdg4o5iEDDuxQRM1FQ8hrwwqPOApo3T3DFlyZy2UB4
pmJKfAAXJDmNU85ehyYLPs1QPQFg4O4
uR0XYVIZTRpvB9gnQI7T7oANAJ7jWi2BolNivwY4
1Qp9m0mzodlJipLS9kV5Q0ICyvwOZx4CZxY3aMkz5TzEmSJ4ssVWLp1iUZOosf4
OJyECLpyuhllBhksqDwbn8a5WUduVn4
n1cr74JbCILdeX18ndunFOux8sTZyuD3pRC3rT6tLdcqwCfG68yTGTsTCPpLIF5
OSMBVnmeZOYWzVo8rRH8QsJsjv7HBrkERiVNhkJ5
BcNV0LdGP2YKULkFPptfRhO3c8xcmP5
ScWGlt4FTtczW0c4D04CFGqAzProfU21TEOL1mT5
ENAb183aJ69AoyaOZinWrVzFQWWYHtA8muAPdSJS2UmNt904zsHs2qL2WgS8Tk5
jB0plfZHwDn19fVhU9AwVaXEzORqP76
C25dNyhYauLViJ3uEuuF2O6
d2WJ4GJt5gtZBnLJnsaARw8MrOePAJIHTsImxH2CLgt7s9ZIRyxU0jVMAEyK584P7yDtvPtH5w5FfLrrmOceFjqM5L2xje6
bFq8UiqgoDGgi0BHozIsPN7ceRDVFi6
v0cjy3OeLUm6FFPZZ5DmRiPAQ1NWLw6
t2L6hQwWhWntmioiVflwEMcse8yh787
kGRD1548bPhjEjX5Pk7Qor4R22SgnD7
Hn3xdNgN56HbkC0bnqFpDg098E2WCj18VavEtQHy6TozFYk1Isg14m3DcE2fagL8rugxoUAP7
AncqwnSYfDslPUMQvOyzBLnL6HtGWdwYuzXhdEFzhmutN4tJVkFOq9cyNyIKXY7
pa3VmhkrIfyWDxiHlGnNAd7
ktykqmjYUUsuFsK5QADWZvZSBMbZsSjHVfAhfWe7
bd9TPwd6sG3GTEM7wJnCaqBKFPq2ll7
ZCWDFKBCLQhFwm3J0s6Rlj0CzjnfJOWoE5JR1Tw7
LyQBPytASfYaPXvBxvsqgsoeyQaJlY4vO65akSXAwpGc6zLVGqu0Vzx3i56pAeKqMY0Bkxf48
iO01HhktAS7AKXSReZ4qohCvWhO4PcHHm95BXZo9BqmLfi33vZovBdywxqziaA8
get_UTF8
O4Z0tFk8ZSJyvmPsJgUB0pV7EbepoBGyM08N9kfUQUafgQ161D9JFWPvTiudYH8
ajfL2utkwmzeshyqOrnCYL8
9CniSxGA4SHaMy0Km6cexO8
gqgUtxSpyrYaEkiLkUjeWfwJkEMV3k2k9Zt5FEyUkwlUsWWzsy4u8XkA2zQ24V8
H8ky8rILFmJMkfhUewO6TeL5ZoOKYORnTwxQVOSPdwg14LJCNDFUo5hCEUbfXY8
_Lambda$__8
wqw32GWEFN1ph0A5eC1Z2j8
cu2RmPF3SZVxPXk00x58Mp8
E2Ko2MAOfbQ2YylW4hX5LonzRnwAfhbpkmsOJIW7fyx8DGXqknENBq8
oOglgPILxBReNpZajvtTS19
xIIeCfhfheIZ0bXcjzkFLjf1TtsBFCQWRHAmqPE9
6fPXJjkcooiHqcTYhaaV2giL0cXsiF9
RHWdZ2B3Pg3YXsAdAOsgpK9
Dykqv1MIFRnU7SVRjJLevrfoxNTqOmwLPtjVTXOwg9xR0TB85XZCZQ9
T9qcqjLIA9aVOyyx0wae7CASik8BBiifDibML7Qwcs0Nw7tUqY1txZ9
QRHaoL1qzTfJtI81LwYfqa9
GxXFSXchbqWsohh287izffeeYKaj6XZ1LjhzrnsFyb3bqxd445IAWb9
TDp7qoAUwxLq8pWRIadH8JjWIFCG9c9
25De0wD6Ypc0J9fkzgLaNy7AHcKhtUrwXkn5MSPBZtc9lbZajFjhWf9
veqRXxIArJPfD0FELbpqObj1FeXa4NoQqRU7kej9
KzJD1spRQ8BtJOmzXJngLSgBC8X8yhfH8JOO6Mw9
<Module>
KofFTIn1tIkcjpqi2W0POcZnxACfl2A
95UElloU8ZuY7R1QPcbqp4gICtkaWJAkesjJEUBA
thkPfcMxXMtnaWmCnUSWlNkePqdWxHnTlvylSfXocgOcorAgJmOiTXTBObYl4QXR0xHhqGnVRP99HbXmg0HKeY917cyY4UA
OQnlj9B5eRqV6MFxAPdz8aA
capGetDriverDescriptionA
DksD6DwL0d0pUm1ZagvcMtA
capCreateCaptureWindowA
xdDwz6KMP5OfW4VLNz8sppAEkNk57BcL5PsgMYZ8MGFloDo8NCd0eHSbJqPRtJB
KOwjZQ1ckghEioyiIEdwxOO9Rp9pcFl7MTVBRGKOumnIg5FDFPRjQytJcmD41kwJrqmH0JliSKtAwzmhjBmH9g6v8NAo4NB
ASwsCSJQHkaS5yYkkgkqg3asyheV58QWSgWZHNG4mvaHqisaHlwRsblmrPyLlNB
78Bpqt1roaNSYOyz88Q3CEXhwuRo7cxiMziMHrbXLN0YDax31G3d50byI7qXMUB
jnOwIC7swjmIROvaTIW6k2OpLxYk264E7bhCUIYB
0AcNS6iSUkpfA97cIr8Awb0uE6kuFn9gqRop9tCUvSlgXoVEXQEQRuB
lQgiebsI09HbeuQg6sf8YRcbOPSl3x4zV81XSv1roARrAKtMQpQrNVj3kUJSKvB
8abinJrnUT6ccpTc3t82Sd8cVC8AVj2QXP1eC5D9HAMgsOA7JJmDIzIHbeDGw0C
PdnhYAQkhdgQEQpcoYeFt1vUs7lf2cSRRl9JZyxbbRn3S1wTwn1Lr2C
DLMXoWhFScw2Uv9JujG6lwqeCS1mAGC
MRO3bky2ojcjo22xYpIBxvId848pkskd7Rvy4344aaeZoioFzPsHOfLPcy8TbIC
F8bNvQ0Kf1YMZmKjTJfb8XHL8axrXJC
F8S1C3BHtbM2KfrrL5hn3jbYqMJROiUWb6srC3YXp5KlXfXQucJYRVKBFzlJZQC
18f6zHoLnKL8X51i2UAhzlejGYAuLQ0osYZccT2J8dOl5IhKjTTk2SC
TePuMdSwMXKy75JzonntuXCNvLNR4DSqUrebOvxMzCV58d6bFvs6JVC
eWKdBbBYcjkDpqIVlijN69iDdCIPSnp3zEjkMllC
ZPkOeVlLxNT0lxpok0F3TlNLe5TypmC
XUzKx2uZ4rrnqvRnAjBDUsXgEZikXpC
RFYFo6x6EOsXB3ZMdIdlR6NSzmoIyPwToYTv7Jdq9SwfCSCw8kVguYZAdt0yv6D
ES_SYSTEM_REQUIRED
ES_DISPLAY_REQUIRED
OH4Rzzjipv58PVTkJtzRKRZu8XPX8FD
MVLkeVDKbiFpUXHv1FHaYGD
HO8wSPgbIN9sPtM9fQXHDOD
ObHfO87J7oWgrbFDGh8nZsjf2ODDfD5h06ZPKVjEcFHz7RCC9JZ7OUBYds0NsQD
ZPGmSQT2UltJI5v59CSs1zr5aOon9RD
aYTOup90d3YqlZrFBSYLPRD
2vvR5ZDnT1AKRIx4sEEHzDdiIlcYKwDwSy3wSTlGR4uT0JyPjJSNXTD
t2Oz9VRXTD4BHYJnnKd48GIxXLKnFeD
ICZqaQbaMhVbdLS0K2xpcXrx9kYRlbr9LW6HNozBIgnI2DBRCtAdNyD
Zw5R31uHNrSfVdA1v8RtG0Edrp3I8wJmz3tjDcpfDxrfKnBGnEOdABRaTcjn1UfzjXuw2s4MwXsuflKcZ7rajKiVJJV2ayD
7c3g0nmawqJQc9bdInIqN9yZQ0j9CHma8fxxJWHXJh0ikUmY9J60yU47iTSjzKnIfweQujb6AlnwSHjambLySwT9EpHB28E
1QQLaknK9RQNMQMRfjcsMk4eslTvkEcCXB2DEvjzv0w9Gr4xbjTXLRE
EXECUTION_STATE
xU7zgHcoj9jte52nHNdm0ovVyugOgaLwt643kBc0ooboynGxW40nZcJK37JNPFATmeFVG39iXrymoBecVs6i13hN4aRxGYE
VXuK3H4dhYgq8sAOUq6c2DF
KQMTYtir4qaR9rHHvsekpIYRyim10PQb46qfdmyDFrRT4BHEoRZgBcwROuPnEwRIBgPjnGbH34C8hVySLUBNvLIjZ3TBZWF
uDsEELgPY4DIxtWLHibwr7o7Uj4vjeF
NUNKKIdQ31XOHxuL4dcw7jC8gagq3DG
AY9KEQKCwdoBoqMi34NwC08wCh2wsacjM6VwbRuNiHrdH7XHfacOHEG
UV83lZjjXSOO3fBjc226TYipXIcsXdG
IUM6qQJJfvznhBjeYofbrHngSYG9ylV0HTn6fwUNydicXjvOFfOrvQssrmfQdkCs1LjeeTFME7veB86YEmeaPxIfGFULKjG
dy8FM8lFZHCljPbPVcXT8t7qpTiBW1H
YAoU2bC6GTDA6prXayyy7EmTNqOQkn4PPnMokB7ZJIiI71ybAtrQOl6TyqlMZPWqX78FQAg7H
sWgysaFGMr2u7RQp09GeMCH
O51ZZ41h9Cazuve3OvVafuE83LFQrGtTXqeCQl6LZm7s2H2dVnFADupBBNcrgSI65Z5D0nPhkX0RY367yyOTX8kzGuiT5JH
AgSb73Eq4ftezqH7JyB2ox046IjNk2NE8NjXdtFG2UkFtvp5Ne6tBRmifI3JDeH
rWYNn1D6tSYQUSIStDSfDhH
3BYxs71UCwZYYVm9VnU1DkH
NHKyObViO66GjLCjuduJK08d2z5RSlH
A55scotF8plXMTHgRNN7spwBVeZ8qdsx57ZmBsfIAvEQo9heR6ARawH
uNINTsAjgsv4OEuBdqG3zAYUtZ00eEl5WqAovGWg02g2e7dmJYqHIs9HsTSyhrel97b8Bjid1DYAfwRfjcRCsW8k7kqP27I
3lbzJJRJY1ea5vjozzpqB5KAqfUlZvt2RryX9z9I
dM7kFdviK6ft0v0yzmdghm1avN3wE51EiHv54EEI
get_ASCII
T3PQfOpWC1ypSd950fliy1zzppCFTleSPtWvKyfI
g28y9eD0pyAhIekjfc6u0sgovI84bgI
m1MKTCFHWrfr913rfkQIt8rJc041nFem0PZolmL90F6PdjlWOhNGqLXNhBj4pKrnt8FbsYSKAMTKd8xr4r7qz3th036mRpI
9uEsRS8E8vR66HaLNt9QVpCso8wOe7bM4P0PZKgv9kXAjoHNvSJ5iuI
WXKn4JU9ZVsWWJzExs4SwuI
Mo6wdj98dX9m1gCPiyDk0dyvC4EYyD3Qq8ez0yR0dsgwI
o8oPeaK5TgqAT1gXEZ4nW42XESHN55UEXhcg2W8qxcmRTaHlH6tvnJeHVm1Dj7vATuRaSwIE7ucXee2CYThPY8YR5x5lC4J
d0qG2K28wsOp9sXKodiH0YdTPi9SrgPUhwFpeh60YKxCvvCs1P9dM5J
dSwpAsdrVhiHrvtKMvSvziH5FZ3N68J
c8yOR1PM44EBTC2WSF0ARfdqmdbSpz6SLGHAVvpkOVu0dUlkcbZk54cQy5g01OJ
SUN0cpbxD0oplLKrFa8f0bmWaTV3HwhSqD0K9AcfPupv0leo4G01shiqfByFcgJ
I3gV6o8KmN9SvmO3n828EggbP2Pu8C9YyQg2xa9yEuP0wM3SY5e42jNVmTA4SjJ
O7YeIkzeFz885jE59MILhtOeKyqibIK
FgDZIElumJ3ZzlmpZ8hlP7nZH6Xdw8tJDz0RRKc1adfUEGZKnr9LkdAC8GOYRKK
bcdXCAubZV9MRPeB3WfNRSiwEnFOGNK
4dMJG7Pq9MIpbDGKaUWY6e3ofoi3SNK
TM37ubpPftdwXgq74rIW4DQXmHsQal30k3EIIqiGLkHOK
gkhudRsJ9Wfk92nZzAvnsJsaOVlxoFWoDGzFaaVK
gI8RxXFnUr1xkQRFBKNkuPXIpfGfhfJPbeASiQhW5bt7GnxPgbkCWzVQzAY4gaK
69a24RL4RdEUrDpxnkV65i9Hyww2SdK
1YdyVZVX0U4xQGI70oYZ7fg8i0tIrMB368TLBddK
PTwf4e10iulx5fYKUB8JRKvaVOKVanK
h9A9tdNQHMypQAZMAhSX9gEiYi8wFqWbgm6VGfPiJkPyK92NgzB3RylpbRQHHoK
cXLycSlDw5RL4ZWRI22hpVQRJO5MZGQWeFLmA4i9RqiIokTj3AN6PX4GQaSOfqK
RX80hdKjcPJZBSF3mCuo5JqwHJ72hAL
M4ZcNosfR7MOpyxwVGCYJBL
Mj6CkYB51eWJq1f1pe7GP4ZwL8n3QgHRjXhVIany62out9Pe3G1StMCrPs6FkBL
dM3UeIUguq8o3UpsT0iodNL
tcZskSNhaVFEIex2w07kSuFY1WCZGVrWzBy4sEqvSK4bH8rd7yez8VL
2gGiF4AIhRT5P3jj12Jv45CIQaD9OwhtxxrZsPcL
kD2cCTUo2WawrwIJWmdNKpL
QWFW68thuKeuVgFCyeXSyM1dAekp0wL
3Ok7vcLJsR4gI3GvpaBkkpUlDTreSTu4QP1NhGML5Si9cxmGpNlFAcIA7slFhJM
uuqWbw4hYNXmzabp8XWaTZM
DwULLqNUnOLJvqaxO10PMoZzXhGJ6cM
wJyEX5uRDAjg6Fd3ggBbmUPZv573RfM
bcDHmIzq0QtYEQQceHfHiSlZEMVumdWTSmPLBWiR4byppM9ydAjkKBMzNAeoumM
zyvt9zCx05IVvePkODZ8C63sfHGiD3sPCJXabhe7OqqQtvffXTQ0Q4eHt7G6iLulzFp4Mr3W6AjWqLLNUK1LVreJXjKPMoM
0qfiifDVzyQhcCOghjpVKcxiJZYTexvuGG6KORFIECgWV05lkSEttdinbAbX9j1rbejghcWQgWHBYj14FDW2Vlm8UVkQqHN
tn5XXwdsYDTgd3qLHkbYMANEYRNgh7WLnU3Vq4JN
vogPF6DgjjPOH3Fi83aUPdN
waGqWtcc7UOYao6Es6cvBLRhDLEgegN
xC4kfbIuwdNiMCv4lezSbqYq6XF1zjN
CVq9vwMq43kL3LHz3q29Ipl94ORu77O
gWW5O6GrEz5YyhsAUWKeM40eaBr6t9O
LASTINPUTINFO
System.IO
qq5w6jARwzY2zxXVr9mKOIYVpTJTpMO
UlsqkOEASQLBnbbqutCIRwMKZNOM6Pw4RGDTtruZ2acb3Hh2lxo3YGggZSoteALgs0adyjp0MXmWZwpbXhbRwYpW3b0E3TO
9i3RagjHyKXLyJQ6gOlkTOUFMIr2m4uq5WLFOGbO
eCR1BRFnRcA1nbt88LIqijXbaDmJeOPYCZqSXpYk9wozx6j634DU8830BKL1QRqAqqgAHGMgCkC7GpSTPDc5AM9pWAwqoiO
CuPUZjJqzLZkMm79ix2EImO
LyAB9QLK2CcTZgfQygHe1QDFFR3FYpjroG4gHm4Vjo1X5yvYEwlABbHWbTxVlmO
t354cLS1bruy6BHS4s40MPYXDNw99AMDehEHjQLLaO2SEdZ7rYw7umO
YOxobauEQ9uvwCRhIMFX3nIrCpsFVQHISRATCZoO
SgakWYD0jZuwjoR2LcBeLEYmtIvfneM3VyEs9EuO
gNuVZ8B4bm7GfEzXu4jy50t9tvUq3jBuKu10jBxO
zSMEhqC6a4CnTpHMDHrGP0w0Fj8wOSpBsGjelO6P
KTJ6nGjB7WhaS1LV7wJGw2xQbccnzMP
ySzc13Z7a1lRF4ceSOb0cfino2fLUPP
QpnDgSq0cDJcD4IhMgQxeabDgl7VkmWARduyLEbP
PjyVK04rMFgKFBgmO6zkBkmRfuMyydCIYZSfcdVavCG2i6NkPa1wquP
RXA10sUkzraKwMYyfZMDHNcNLZ4zAKXjxvG8sEvP
KibeiDYki4GbRUXWcOdBBViK7BZV98Q
G9DRYzCtEYwvtHYwQ3j9ugicXa4HmJe7rry6fxuJTOcNfkrFG5Fp5tOVOdcdYRKCVH7FJAZ9KGVcAmMQZsJvPNjeicK8gAQ
TmH6yHBsMraFbByaEV4QOHeqwT76FHQ
EuK4gEdl8wpKpIU4laJvR1ZI8IOapQQ
vFDC3CGylu4ZcXsmS2XuAtYC97TkAqWAZRmEZOyB5VhouYHIJ8uTuMhGSMtEDbQ
dqQdZJhg77aK6KfXLS7IEizwkJSn1eQ
kgAH5zNBm3jb7XTkP9McBfQ
FGTfcgwOiOtu9CGcWdYwzJoymq3MIDTugj311V6CjWQNui6Y8mvDdhQ
PmPg1koACrkyRB3NaCYwXwX9LVWxMh5THEy1pw9vrWSXohydpZCsq6DGecOwLiQ
O6QJf6W3MBXlpDp0ExJrmLUaOsPjWOnkAx1wvexRiJIEgxn9nyWmMiQ
1Ff9ThAe0hc4lFUY2cJfpK4dL1xGX1dnA9iZtqorE7cR2OQ0wYC6XPt8lgc2QiQ
Ar9puN9PYAZJkTlLV8s3FaMC8wVzFsQ
c10ddYzamnj8WTsbJ8ZlecGCaw7mN8rRWWD4pVshotbhT6ge08ysyk3Zg085IxQ
RJOAQcCkoI8ZjQCmRd3rO7Q0Wgu3uP0KLFNfMzxJgOGaSqpzU8j4U2R
zey9DjA1NAnUsGAOtsSyd4H1fbPsb7R
yR0SJvQKYNJtYraeLriVrLIvAvDdvmClUS4DGXFBKPch7EADS5SDtTFI9GdwSOusGezE4eH41TyY1MB2ONL1nXcbfjNXwJR
9ggrDlXEAGGZwB6W7UNpPbQUM4My3aHfRHeyav44M5nv9qpdHIMqSR7DhSHxRKR
e2eAVnwxzsUFXULqZWR1drOmhRUXfkciPgQb75HLqwCg7fXgCpxYuOR
dOhJfZ1pRK3VYop8SEiYgS0NsJAB5KCqEBN6TvrT1zPckbFnojFgrHmJEaho4g7SmP78cafUR
WNdKAxBusLZTvZmVSTBc1WR
ys2BSPkbW7pCVJCGu88a1vRIk8NJFXR
jpMEQVIsCsQQlmsRXlOEQXR
izHisShWIBd7pPgQXvV1C1LtzX6JgBf6mFXrrPT3DgJmq7gkJDXBKEfAgTsklrR
OjSv5pmBjta7hgy7rpdXPVjQ6OWiZhZAYTmu1gbdOD1ILsOL2HApoiF9VOYJ22S
T1nJB7SnAaibiR7XqsR4s4S
4Ot2ifE0GnoBTGbpB4qqJmWuDncgMnTStreyW1GS
y4c59Cz9NE4uR8dbWl0uGvPzoCXbIwwvkx8kCKRaaF4uBTfUJtjI5qLNgJ7UaNS
ES_CONTINUOUS
nUngDDxIRfSn1BAStjdDjjS
85oZrbz4PlM7r05qBF5wYWEQTTP03psMnJy3TroS
TQ93SkfkU3ALPILUhIlNwBCUFo0SvN02yVrSaynfggpXIxvJqaeuQKplDcZRcl9DKKyMAwJqlCjx12YdQjYLblcsXf9BqrS
rrtCdb9aMzTrhD3tTiuBBpxKRIuz8tS
fHaMpfgejgI4kuinjYVnTCphMpLR3Ud6vagwNzDVug6XFJcrxnCWMOJxZpjjeuS
kN5Sy9BSlcOV2fly6WNasjIp5WPwtDT
YSUOY3FVyhW09mUQuBDPCMT
rPnqq5oDB3TdhiSprUpZo318AcEvNj0r5giOZO7ptTdi4wrrk3Jk3NT
o4TqBqPzeZiXcyqPHPaLE2U
ZgvsSBmfBzzP92MWRzSgQREbRNhFN2kuXQKNP7wjLHVCSu01VQ4I3IU
moGidu6qlc4r3QGi24fsJqIUDdHyS5h6YEsJUIJU
rplfX2ygJTu7msxvXCy0wDuC0YbZrXU
KC2sZPU2kGG3EtvoYSGx7W3R1er6wbYpXrmwmdFAXTysHYsii71QjZU
bkEi17fjXQL5UHarGsKLmA5CUVhKbeU
pWC6E3Zx5KPUjYoqZb1lDEpSj4d6fWRBziklYizU
4OLnA08Xw8PhaTrA0NjHSENuHUOHkx6wUcN1ShxGCNHj3QFShLtDiefp7jDYw4V
1IqY0kAHVbcM5QuNpe1aj3q2hHkd4HWVA0I7P75V
TUzblZ0mRdsCKitmDyvI1HV
efuuBUMfe9TZtFWv2G2ihTV
eHJXLXe57cTIryM4hjuE4nswJdFKuVV
jmvQVpFd2SmhiebCnTEPFgfroHINPVO7LOjV33O5lGvjV
DefdPzIX0oRPgDH6x2vp4T5Y8wOlKkV
DdHJlVi3niNc0pRFUtMKDA26gjs84mV
tpfnZxMDuwfc5g3e82OUnJIpfMjwUMVyaCJ9dD1YykIvDzRilGBZAu0C83nMtw8splkGfk30W
Uc7f3bC68nZATgoLp4Lb4kgwubgaXOZ6XYNkT3LW
CjTJgsVcJcwOy4lk3tWlHSMCPIHl9LW
LIRqBLUYviYa8wBHh5APJv3HHsvAa3vIQ8ccGLPW
0wiStimqOzweK1XY2EFdp4IOnzQMGppTdBW3uc8UgagsViphQiv3XZW
ssWn3eAzhToxQpjDdtWaWzW
iQeCOmZ3EqJ2rTi3cQFlxgUP5z5rK6gkzm0GOBfyvpOCX
YYIo7594rdapEh5euUn9S3oj2n9mLMfGnoKp0xtI7cBLUQwzsUSutZKcAb2Zm4cgnmnBf17OA8T7qKoPAQr5tRTjT2oXSWX
4LWxnaAnYWjsym8Lu25ABlTt9Cu9tfX
COolxzX2Q8etHsaqEjF5mBVdKk06vgX
Hl5D0UqtzSkFqA4B0zR418dPlBXqXkX
Z5t4NQ2l1RVXsoqpW67ax0SCmRZANtX
VeILDyQcTBLwDMKyCVYPcvX
gDrury9D0LxsyCE16QKiFInJTjDnc1Y
qOM9HtOlD2WLeJku4PM5ZtbNm6bI9B9M2Dzy9TDorbL4Y
ojewCZrtSa5Fu9uK4oc5q6Y
MICwdqdDJgjlnwf1Zb6UNVY
21dz6oF803PsTZu1AKRBIlCA7mq6EnC3GhwbmNYY
EKemvwfERNx0cTp3ZE2NkOxm9ZZg9pEziJ9lKSly6dIPE0KQMUMzbJ0KLVVNWnrSvxFCVrEtY
h7F2yXwJcJy87q94CPEbYBT8S8aq6btYz1vsGs7HjoiM9lDRrJAoI13IupTw4dbLGw5uBKWiQrmEMoqGNINm52eq4wP8ixY
WbqUP4Yzgdbr2hAwVgLzYjMdiOJQBrE4vLEkpYHGMdm1ZHd9X6tINdZllILF9WZ
LMmAXrIpgPGsB6vSGewQKBc7WAnNFXZ
8PEZIXjP6iuGIBkDHsqzCCeZ8mEJajZ
WRoWGOn0ObNS4zR5QMnjO5S88DnAmVByiUGzGolZ
Dispose__Instance__
Create__Instance__
value__
f2HxMdViYlCkXMHBgPnQepSKtkWIV1a
jjB4v6eEzKBSxKH5YQORzJa
dIHYHEOnENp8xABgArTVqordvyF1bha
wG8gZQU5Ut5hqzP2yvEPWsDlgW8UpLQ54YWJLR0tiMeDgzZ5ITHEmnrUzmkoaQEslAu50zlTFlZK6PupkwffbOJTHM7zwia
ProjectData
F9X1l0EJG5cv91sxyiZFL4fpzK3UOsgLHrhPNK6g3NrDOlzq0SVGDiRIByWA50JYgUa9mUCXb
0iCRKnMB0Y5oT8ZOweYyl33reFwQHib
mscorlib
JzfbzbYQIKh1oawr8G4gZzQp7ooXVyJCDWHcIrV5rkVTEAhPjZTMU2c
Pogdsg2vn8ylXVdDEgfl0gC3jckDVRGmL9EnhH8yvHfMjaX3ikbc9sCRSJ6Ne8c
xaeB59HtgWuLBSG5bFCq3Ic
BsLhkCo5D95Wt7tIDE9AsUgT8tj0Di2gFyDE6gEdPGmtLjxe6tNgrbc
xqS7qbuB5hGDGCvMUG5VjiCC9oBX6Q0jEQCwyuec
System.Collections.Generic
Microsoft.VisualBasic
3Gdtnr7svYNmHHE9gmXNJUjbTcC9OWsFJZ0OsPGctG81xMsRuE8iTKHDDwBfMkc
4ToIyFzdlvgkTP0kFbuLyoKh5eeyhoc
LowLevelKeyboardProc
fiRLfFhVRf2xNWdGIPr2dJfl5qpfwxc
XrFj9vBsnJdpWbdeEjcbGH0i4vdFsPzghwU0Ofr8A1e3zdyRfdsZKIlpQNOdClI1JSNfWTlazGTyCxyf9XUkx3W20Jz1qzc
rFKvS06VCssID2wjOM3hQNO0G2PKj8d
l8DuZt2E3PLxoYvTd7OaMFd
GetWindowThreadProcessId
GetProcessById
8iOybCiWRvUpLWwdDRKkZtxzosQ8pMd
BBpyNDiarek8yyVtdpksn16AYI5djqQaYCCVVaQMO5ZICj8AwFZkOokLUl94TNd
KpFafhYMHRu6PE5LkrLaFJmzwDMYqQd
yN2eDGJF8cyxFY7WYtFOm98B4HRsCRfHcxaDQ8Ud
Thread
LN1aE7X9jWiTgpeEV7Wwpad
RijndaelManaged
get_Elapsed
W1x185milGQKG6Y7WheIwfd
6wz4jv4Ug0YBsuNEGLPyweYeQFwGARNB9LToVFikEwg7K0kC2titPLwfjO1DvpGavR3FFaBpkqNn7BSzWltC3pqkt6Dv6id
EndSend
BeginSend
Append
RegistryValueKind
UBound
set_Method
CompareMethod
TargetMethod
gTVTK0QyIdyjZODQjwE75NBUyt00W3e
Yv9b7mLRc9dPNw544JzHMh2hzigpIbce5RvbAgAe
JWr8CXnx0Lx6I1rOu2BtTkcnETA77Rz3JLIOqDZ26Afwko9y7xmPkxUBomiI0O4xXTtdXtRaV2qQYE4PmIMTdDMXB0i9REe
Aw0IaiZ4LpcLNkzrtqHkyIGRNfjaNNkj1Zb9PtOLw16gH7ALFmqGbMgC78OrUsfd30quFlZAokh7cK8WP4AmXgXpVqjAjLe
7lHFgHNdiDqsE1HRYBgD3We
Replace
IsNullOrWhiteSpace
CreateInstance
get_GetInstance
instance
GetHashCode
set_Mode
FileMode
EnterDebugMode
CompressionMode
CipherMode
SelectMode
FromImage
DrawImage
get_Message
EndInvoke
BeginInvoke
Enumerable
IDisposable
GetModuleHandle
RuntimeTypeHandle
GetTypeFromHandle
EventWaitHandle
Rectangle
DownloadFile
IsInRole
WindowsBuiltInRole
get_MainWindowTitle
get_MainModule
ProcessModule
AppWinStyle
set_WindowStyle
ProcessWindowStyle
get_Name
get_FileName
set_FileName
GetTempFileName
GetFileName
get_MachineName
get_OSFullName
get_UserName
get_ProcessName
DateTime
get_LastWriteTime
dwTime
WaitOne
WriteLine
get_NewLine
Combine
5BCxtp0NvF1AhUBnmNAwFT5oMogvOpe
ChangeType
CheckForSyncLockOnValueType
get_DriveType
SecurityProtocolType
GetType
SocketType
NTokHnWfPFwCtzhKo48cwqe
System.Core
MethodBase
ApplicationBase
HttpWebResponse
GetResponse
Dispose
iFkDgAyICnoFlMu8tySBp2vLqKBYXte
Create
MulticastDelegate
DelegateAsyncState
GetKeyboardState
EditorBrowsableState
SetThreadExecutionState
GetKeyState
Delete
ThreadStaticAttribute
STAThreadAttribute
CompilerGeneratedAttribute
GuidAttribute
HelpKeywordAttribute
GeneratedCodeAttribute
EditorBrowsableAttribute
ComVisibleAttribute
AssemblyTitleAttribute
StandardModuleAttribute
HideModuleNameAttribute
DebuggerStepThroughAttribute
AssemblyTrademarkAttribute
DebuggerHiddenAttribute
AssemblyFileVersionAttribute
MyGroupCollectionAttribute
AssemblyDescriptionAttribute
CompilationRelaxationsAttribute
AssemblyProductAttribute
AssemblyCopyrightAttribute
DebuggerDisplayAttribute
AssemblyCompanyAttribute
RuntimeCompatibilityAttribute
set_UseShellExecute
WriteByte
m_ThreadStaticValue
GetObjectValue
GetValue
SetValue
set_Expect100Continue
Ub2itIxykm6B3xmwCtVweqdSs5KyWAB16tMgBrnyYFK4HRe2pqmr7ve
EndReceive
BeginReceive
hl177696zCld8bUtlCLbmpd8B9iHGdmo5WphsRwe
XClient.exe
cbSize
get_TotalSize
set_SendBufferSize
set_ReceiveBufferSize
h3O4dm7UTTvkEi2tcidJ1fvoQzekna7pd6oh4atggLGmw5H3J9MUA4f
Tlb6X0rOuFCQ26gOansfbCyMccBYNh9nj2keORCf
wmxF4k1JbydZhMwgUGmurLb0pu2mKV4MdTmcohW77t8APyl6Q8nsW9a7fvIdiePY2KnwxV9Df
0iK8DfohumOQksZ7o2273BvbTih5vs2CDCxjDeFf
lpkNmSct5yZ85zc3pVzu2ZTER9tIVgYJsXQ5xerdzTkP1kePM9zeDZFSt9CLLKf
SizeOf
4iCnbo34RE5QKtoQEsHVPmr3hYPsZPf
XKKo0rd1MivnyrShv4oFww8LF88IxBUGvFV41up12hFhKEXQjv9siPf
TwDlvaTndvTpOvypQujfvhvym454KSf
MrOBBbbdVPdZAwWamQVSl7wxuycLljnSV6ycVHVf
OUvYseL8SLhQ4MQFxt8nEy8bTRw4QnolCbAmY50lRNBrkWBJkNRpJff
3sFXuxNFe84YyLemHQekXwg0B1lhKof
Xe1Ypxi1vRkmXXPHMNeD77o2bKu4Hsf
Z1l5Vo77MjfR7pTjAxSipXYrIXoSrtf
FYS8kCeqhFf7Zxq2uJDFHdft5lGGwY5im26gB5fjQuyoOmLGoShwvnJjH7sS7xf
4fYDusMeI0pZ53SPnMDiO7f8EKJG11g
KpkorUsR2TjnlEhUPi0OQAhT4jz2OZ4DLdpXGeej3iLWQEq8l8thB3g
vRDGm0DrhC1t4OjoA47LKPBXj8fW8Dg
lwmBAMsFCWh8TWJ9mtizKTyofySG4Eg
LFAsMT8GcxN7vLx2W8Zwubg
get_Jpeg
2EEZ6Ccgpp0PwAg8iKqr5eUDO3TGmcd4G1OezRNCBkkgqlTPShzoflg
System.Threading
add_SessionEnding
NewLateBinding
Encoding
System.Drawing.Imaging
FromBase64String
DownloadString
CompareString
ToString
GetString
Substring
System.Drawing
ToLong
set_ErrorDialog
dR9PZDa3A9qVdLwLtpwvPpg
NHb5pT76GisdGytCiAXmFSadoovX6PLrpVzJJSOQk4BoavRREPSa0yGdgMlaMdLHiH8zaP4JxEMYn2z0h
2lya5rigCEcP509VjXuWEzXfAZzE2b9Aw8yot9xi1fSQkU2F0gHh21h
9WtEvuBmnQhezkVVrHtOo1kp40RLNxpVpLswlpvqwoPAMfmMkZqxnmdUUm30T5h
qa2bUlhRcdCbmsA6Km4r5k56wZutkmRVGuVWxDBALBX7G7e2Dc0nuWC4IxQS8ATvnawUPaFDh
3eYFwrenPRL7ZyrTNJ3mfCkhTmBgO0drYvCGquDh
nUgQBulwDVXLFvHrsfphKL8Y5u4c13yMo0ckUHaPcxn2m3YZpWBvsbsja2boChhR9CTXftuVlhTO2GIrClxHtaGNU1vSNFh
6LoQLGgp6hc92kDTjKRHi6M0qHHIvvZF0NEozwDA5txE0k9uuFPDqCOXfLaNNJh
Bwxm6Yt0v1sESiVCqrHMydzm2KnTSbh
Stopwatch
ComputeHash
get_ExecutablePath
GetTempPath
get_StartupPath
GetFolderPath
get_Width
get_Length
EndsWith
StartsWith
1qMvJS2th0193C3D7Ak4kCyxk6cQ2m6m9TLGah9i
kkegfIwSrpRX4GzeGFGWxI79MFNCTDi
zjSS5tuaq2nJrcD3UQnhmXRIsaqAnFzv69otW60rYmLSwAvEDh466pG7jfm5WydkAOdJoW7ad1hpiDln50r79FZiKAMm7Fi
lLwXZ9OqT6i2RXaQX6Gad59FigUv1NO3s86YIwNi
xeV0oDkgr5tNTQo5ukagcWad31nyG7xG3KetJ1DynQI1ygx9lsji2Ti
f5DKTUoEsgG9ldmqbkuUaOnuyg3d6paqshjZUBpi
NiQWdwyKJo2KgmMIJaLdypkbOMxaTTSSdCKFMCJdGmVpSN1H5J3WxJ09rrSR9mqNzJ5Yqt9yPI9ktmyZQe6OXdqh5wmQmwi
zbc7xodzTucNTEEdg0uCFTwnohQIvKqUtfsUmFCj
cUNMglDhmoR3o3WQfjotdSj
1Umnvlp2iaeWxRpZkSPYzpwYImwP2DjAdDNjRNjhoTaYtHICRa5GZcj
dV0ivFFQgltlWuceofHtewAngpYZxihxjo3ot8R9eSJNPzNEx9T9Akj
DsUBrjThLISjlRQEePsmO894TLFKGuj
KCs5s1UEcVV7KbissbKlE5wfUWVUmvmCWzhBI6K96XrXxx8sYkQ4v5wRXlAoawj
L726YmCSWNxb3xqfaQFRB9FGSLtx1vrFF8J3Shwj
Z5aEjgrDdes80E1PSFTu5kyC0QoNqL1NjawgDDnz7R6uNsIw6Rv5ym9lot2017k
E0mYRyJq37eAJnkw2CBouUL6lKJJ6AwaXeEoO3Kk
KixabqUHoXPQwpty3GuqxxlYOevUf6hrdxfSwbLk
9lDGA0eFwRx22WfeXiYMiPyNpZO6Bbk
get_ServicePack
AsyncCallback
DelegateCallback
TimerCallback
WaitCallback
RegistryKeyPermissionCheck
5XK8X4DnyrZaDcQPBX7w9qkWt8LCock
TransformFinalBlock
n5rItLwJfKE50ennAZZ2Uvq3YRLxnh2lK5Qyc660BTvBnGpLn4Ho9dk
TX3ah6wV5skrivoXIEId6bRjMsVBUWbtAkUC0eoDwMzeyTC4lPcbehm2Xf6Mryk
KGRIVHLevJDzk5UsN9tOlR4wxXpDWGTDhdWBnRk1Xm8Zk6DoxZi3k0l
DmhCsQRNQdjovYrC0bNRzvNkAfhgHXBJItq4S54OXiSVj3PSklYxM7l
rusBZzWdNsPKUYhMeK9Ub4QsDkUAcN1IRN7zFRhnCKaumTuubsF9vAl
WcWEk7cVlBw9hrVXN4gsTJj9daR47kExtU7KFMtGs2wsWWqq3y98BzCaDCYdXCl
S0XTmjDn1w64RrWDm4DaDC2dsusJOXwaTE7WuwRnZ6wB6qiobHXLLNSAB3LrIFl
ktRbLE3fub56S5gAP5wGnV5o1gVYGedc41EuXFsiWO7uGBGlZZMHl
NEpXSPPyHKPD807wfNNCkIBcDIRTGVl
RAbexHYAtneG8hfYPNeczSXfxMYaMePJyCi3nhba2asSeO78eDlKMPfvwv0JPVl
fzhtqhKM4uXoWD4MJQ29TlRfoYfErsU9Ny6ejUHmkc7ory20QDgwiEsOQcOh8Yl
RtlSetProcessIsCritical
Marshal
System.Security.Principal
WindowsPrincipal
ConditionalCompareObjectEqual
BpHEVpTX3zugFmKq8iBAYiYePgOwCdl
System.ComponentModel
LateCall
kernel32.dll
avicap32.dll
user32.dll
NTdll.dll
set_SecurityProtocol
ThreadPool
ObjectFlowControl
8lvFYirrzzTYzwhK1tyKRlfiKIHJkul
MYsDtj6mEGzORovroIsHx0UcLBQsZlZOpuMhEA7m
5xdaFZ6vJK6WKscE0JwPMzMaMFiNNx9UCCHQ047wiaAUBtndDE0baQVGjG7LWlzkgg8NV0IDm
wP0CO71D5Pa07HZ23DuBMGm
7GNdsjfUyJ94hvrsfn4aMolMtVofEGMcSO0ahHxT2ZjVy2ofVdlrGfHhpMm5mf8OMYHvS6nqmuJSnj2N2xsoWFWiWQeYEPm
9OD1mri9Kj0tlZZcNzvIoNLIXOMXXWm
FileStream
GZipStream
MemoryStream
lParam
wParam
get_Item
QueueUserWorkItem
get_Is64BitOperatingSystem
SymmetricAlgorithm
HashAlgorithm
xWEa4Zdy6VUfB0wwtf5dTySEZxw6bkm
Random
ICryptoTransform
5JM9JBkelyqcdyOG7DhxmEREH5mBF0n
JOAopWxSRursc08ZbyssX0nZEKoouHfzulfSMD5n
RzCKtJKstxRPdLZCzdJ6Icuth4ldRjxczit5dc5n
YEZx49nUMYKups3C1L50UXhxp9ZwG6n
j5JbpT0vogdvzX48BpcuEucNaW9Bc8qU43qgiPpJzInRyfXXKifU1Vqzeiyz0Mn
45gglG0TItx9jwraHHsSlYCQrNMnSY5k9nm1zMNn
ToBoolean
op_GreaterThan
TimeSpan
CopyFromScreen
get_PrimaryScreen
System.ComponentModel.Design
uKhfdO4jqN6YH2IF0WP50P1YxtJnjkBiK60ppZX1JLeJ8kGFlYGd5vI3satCPhn
AppDomain
get_CurrentDomain
rQqrdkDFPEIvVJPTTXPGSveJgiSkeWJsos35Wq8fctKj2etBDkGRGjn
SKRiCJPevyhF5PtDXyyb1lrfHmK6VEdJxv8wWnkXO9qdEbWPTmVXmaEhCyUOzmn
wAddd43u9ZNalEEDqZGYz65Z1z8gQop1w6kuLOon
GetExtension
GetFileNameWithoutExtension
get_OSVersion
System.IO.Compression
Application
Information
CopyPixelOperation
Interaction
System.Reflection
ManagementObjectCollection
Exception
Environ
SocketShutdown
sJSvKVMPtihUp6OjbRhulAiFSPgDzU8hTIR276vXoV78Ql3vGrM4AY4BejpRt0pG1jLPUMI2o
nKOh3l0Rqy24QdfljDYaGZoVijoQk7o
cO1A66WwfbRn4H6qS7ll5Qwgr6Ke9D1NtYmdpCCo
get_Info
MethodInfo
FileInfo
DriveInfo
FileSystemInfo
MemberInfo
ParameterInfo
ComputerInfo
ProcessStartInfo
GetLastInputInfo
DirectoryInfo
qyjhBsNMC3RfnNMFQLbgrsPje71YKNqUtFvTXb5p
Hf8L9rmbcleC1JQCObSMWQRra9gRAS9SJ5kwliBp
bUS2gox0AnyUGF0GVRfaqf3NYCJtaPp
HsMuMTUEl82WwFW65dLTJyYmVKHwPXySM5hljr6HVwWykeIDHoAAa8lvLxTWUap
Bitmap
SzQGownK2FWdIjcOSJDfVFnoT4OwQhp
ES0CZmJwlnGHkmHeEQiBgpcxoSYpFEmxsm14TLlp
b9cOexGYiApDzu18SFBrAbj7rqPMYtEnGop2su3q
GK9HSvlGLeXjVqBl27VlfPU3lgodlL7cqCC7FsPNSZwLpLsFv4jjaxEcV2msihpLPHWWhY16q
0NQs2sRXwQzgKPCgd3X1hYozNpclmTqOEXVrgYn9lSIqKaw1VqUtXLwAbTwi47q
f0ph8sNHiYG2LUvumMfn4yDkdNlyvPYraLsjF41khDrkumSzW2gT9Kq
uXAbZ5uMRbYbCEgveici6v7HMxg7jUORSmvZt8Tq
V4360RoQWq8nfiyoM7pdOvIN52qXe1MryBGCUN53tNoFeaPjfMyGNgzB6LMTCq5EKckxyiDroOT961m3DjmhFfC4CiELFTq
37EKM0lWle9HHbP1ciOmXkS0FmCzWmQHeGT2qLqlBFdhZDUEughIoetO3oenkVq
cheb9kCH6BMCNHSEdFAD4LmcTYcmiTS6aebJ3EZRYG6jkLWlTFBiXil72XadLYq
gT5PbxVasZdNe4IheJtfekRsajAXYUAHvLIS5WIXBUEAoGQZHloaPZq
System.Linq
4g7NFSIpXOg4p9DBgirZVmWkdiiX7Dr
BqYHDgaW9DDaqNLwbiMLRNzmJ9mcnPI37maMsaGSDqV5tNsr0Va8EYr
joKQ4iYx7cwrzmypHy61XvkyZTZTFkEqCAMP44cr
MD5CryptoServiceProvider
StringBuilder
SpecialFolder
ServicePointManager
ToUInteger
ToInteger
ManagementObjectSearcher
5V9XCBm1ZF5iw2ZrOxIWGyuelAwmier
SessionEndingEventHandler
System.CodeDom.Compiler
ToUpper
get_CurrentUser
StreamWriter
TextWriter
BitConverter
ServerComputer
ToLower
RqGZ3lG6bSI3tvN061YPRJ1fa3ZSffcvdzvPCCMkEm5PPHgYPXG2LmJUwwLlFfr
CreateProjectError
ClearProjectError
SetProjectError
ManagementObjectEnumerator
GetEnumerator
Activator
.cctor
Monitor
CreateDecryptor
CreateEncryptor
IntPtr
BaAGnLcd51HvAujTk13MWDOPnrHeWeqQ9KOg179s
3HWzUzKrm4KbScpKTgZDhnkhXT6TiRSEK5QjVaFs
7nw0AcWKsaxNORLROpK2zRZAtEbbnTgxXfk72ID7TXsXE35p3m4UPvBmmg31Rqmm4s1vDH4Ns
JpaZn0GUcXnmIvCdhHOGp3tWwB8YNPs
7K1OYeMNyK7TRRcbnnsSbNjX70T4xSwyRqWmFAcs
Graphics
System.Diagnostics
FromSeconds
get_Bounds
GetMethods
OtRix4HeIKXvxHykHSiKEes
Microsoft.VisualBasic.Devices
MyWebServices
Microsoft.VisualBasic.ApplicationServices
System.Runtime.InteropServices
Microsoft.VisualBasic.CompilerServices
System.Runtime.CompilerServices
Microsoft.VisualBasic.MyServices
GetDirectories
ExpandEnvironmentVariables
GetFiles
GetTypes
GetProcesses
FileAttributes
SetAttributes
ReadAllBytes
WriteAllBytes
GetBytes
GetDrives
sW0ra7tZy4BAW45fgdjgFgfYcF2VgTHLSwxaogSbWixvaQNOOGRRbfs
SocketFlags
Strings
SessionEndingEventArgs
Equals
System.Windows.Forms
Contains
Conversions
get_Chars
RuntimeHelpers
GetParameters
Operators
GetCurrentProcess
System.Net.Sockets
set_Arguments
SystemEvents
Exists
cXtAOFzqHY1kKNirhSAu2MCSLa2goNZgWFoCQb4WfjfOlGwPKlMXZ3UDmejWDiXUKhjx4BOys
DHeZbqKxA3HvHN45dagexhcAYf6BqBjr0TFvj6sDB9tbJpoeSUvTekqZxrQzJHTOrluw9gTihTWhR3PmwCnSN23gCHJLt2t
hGFq8lsohCE4Rd4agxqUKsTVrJ9i8rm1eOp6VC6t
n3Le6Lte2CxBmZQazInf2Ct
2O8zMvrkNXJJIUOuOG3uQgbL1wG3gpxg8DwZBPRGRjAlMMfBbieDfZiC5pNTPMt
7u7QcttBbCh7pgO1VGVuOaZvEUfrxi4j6J3WPKUt
esiX5L6ctkypZlSjrCL9qCO8rkPpe9yqK1l6BPideQWurjIed0iZrny7HKdDTYt
PGsvNEuHMNpsWCgDtQDEN4KsEdvDWPWcAQpY5SGFEFAp63Nr5TaZD6Gs2KVIYZt
Concat
ImageFormat
PixelFormat
AddObject
ManagementBaseObject
CreateObject
ConcatenateObject
SubtractObject
TargetObject
NotObject
Collect
Connect
set_AllowAutoRedirect
LateGet
System.Net
Socket
get_Height
Z2ne1NDrUWgqd3aTPPF0foqUElkcARq0MFCDba0D68EXJiCL7vy0Oit
op_Explicit
set_DefaultConnectionLimit
GraphicsUnit
WaitForExit
cc1EH2k9R8iBWJ9zIys7ThXUO3u7msGsB36LFPjt
UUZQyfNBVgMIkcViCpw75bWa83ViTNDivMhW4zTiB8Tkt
get_Default
IAsyncResult
DelegateAsyncResult
DialogResult
set_UserAgent
XClient
WebClient
System.Management
Environment
get_Current
GetCurrent
ManualResetEvent
get_EntryPoint
get_TickCount
get_ProcessorCount
GetPathRoot
ParameterizedThreadStart
Restart
Convert
$VB$Local_Port
HttpWebRequest
$VB$Local_Host
set_Timeout
GetKeyboardLayout
ihA2mQVjJ9KW9l2Thcc6ixlsa4awIt37HGnDnlkBdo91Kz8po3xUxwt
xd4jTOIgEWlYeypXsSsRLur3PEXHA8I0M1fJfmRrMxa9SaBgXq5vMxt
MoveNext
System.Text
ReadAllText
GetWindowText
MUpW5rlMckmVuxktU4A1McWIggomOgo5NAgkIM42VtTB4XWfQvLM3MAOxF2GI2u
z62d1f9syMrkEufnCMFPUlMJOKqDy4u
R8VLL3Mm6IswaE51nrq9dqtmKcQY9kP5qkWFEFyYgVeh9fVLkZkLOFgMsGc4R7JR9XqKlwTvuaSWnZdv5IRlXQ2wgXYKjAu
YeOdSLs1jTXPBLbx5KyyE6k2VH6yyiUAsBecaNAfm36k8jQHZqBGlEf1aX5eeDDMYWaPGaeEGBgtsZU0dqgkEYvm7ndGMQu
txOlTipdtKY7HSPEvsOVxqSwS7do2cu
I1ojs2oTj6DTAzuboVISUIR1LPokugu
RkaoBMOk5KoHYtX3vE52yru
KtBXXHaFJWrGvv7fD3gbzTOOvU36Suu
Rm8XGqZwwLvgNGZ894qQ8kLHLYCQqwu
yK3PzFizIyaMtyr3Qb4y6AArhJLRTec1rzRpmOXNcS902gqUR6mEoBloX3DAK3v
0YFOBvxZlIIUdd14yiJ0SAqMW8MktTKQUDxb337ugtKecJKsyvvGlDFPWoA0z6v
jkGryLV6l24M0nfkgANyPTNgfNNQTGJkPbDJAOMc4AZa6fpWvFohH1c1HpLgmZ6Yf5UzsumXest0TxHOyOMFi5lm3nRGtAv
UXNbmaMiJgyH0jW2eKoVrsKCkKEvEfBAmy8x1tBUH2mejhURHzpPrQjcgJb8HCv
iW1F1XBubda8ykRd734MXB4DSMk9lEv
TIeqhuhNVpab6rYxW9eA5m7cExXckRtMhUACKYOv
ehMFGr6TB1zIJFyHFHnEb3L7YzGd84UVBtxM9wQizpOAfULtt6GvCOuy0WfDMPbM5wD5h4b8WANQOZhjsxuON1iQsH8q5Sv
kKB4h5jcIHF6y1LfqftfuNYzArKx6sCkcmvHikWxFlCelBnrOGFtqRM1cP6O0Wv
wB20bZZZ4rvqnqWIfqcRURUfWISH5Y0WXxgzgXXv
izUz119phQzLDv5vIg11OKkhkIQL2TKnPribxW0w
bdWEg5eNRwYtmCIAOWZZtzulQlF5d4w
YMGpaaULfDYvzNbmiCGiI7w
u4Exc6oFY6nWmFay8KrdeOw
nOlusetM8eVQATQuP2wcXgw
GetForegroundWindow
set_CreateNoWindow
aUrzvkXSCwVXsbTt98R4mEs6qAzMDtw
6z2ibFoIuaWBG3j79uYD1959RHvfxuw
yRBcnEKcKk2uybCaPEsj9T59hYYWbovzTOMo4mYTOwRtd5j5iKHBAtMo3j23PIVbDVdhmfV8x
bDRvFE8636d4tx1i5TE1DYhgk5PLJBx
ToUnicodeEx
zOB3MdAvf7O1JImUSAJeg6I8Tl8rkKkTf5V45bvIRUUmKvMrFGO9kEx
UnhookWindowsHookEx
SetWindowsHookEx
CallNextHookEx
b5ZYkkkOM5ulCZLZRGJeRmUEcTYhFFx
SRU1pvA4h6nHjxzoMVpaARx
FQ6f5DsEjsCYznWlsnqu5Ss6ighJKRnLQMJl3COnA3FnKN4pu9uhcGP4Iom4jTx
f3i4V5Q8iRMlWG0oy25bkrMJL4hOQLjPMXU75OPhvZBiyApLWLF1gvGkh3ClVGszoxPh6UQZx
LateSetComplex
MessageBox
EfeW09K5tBTBqR9dhsgFXb1s0bRf4FDvn43NghzHxPSg5G9fQtgqHpx
7teApDTcHsDahvfcFSpgdXpaEajw5C5OW3DbaRDRbUVJZ7JX7E0zP7y
prf6Y1wlktdXEaFkffhedhY82OY2GOy
ToArray
get_IsReady
set_Key
CreateSubKey
OpenSubKey
MapVirtualKey
RegistryKey
z5lsmTYpMj2qeXSKlmxlYD70bsnpCrGFAhEQ7Rhy
System.Security.Cryptography
wmgcWJxQZuLgk2i8nHoFWNvu78OKf8FWOIFPgoky
Assembly
AddressFamily
Kwgf6bxmXWNueaMk7rbW7otV7RO539tv4pCJPlkKGUKhP7jPyGYy0KrIklZjFHuvKXZmutvxOfU34GOb92Tkl6wSKWyp2qy
iZqvvl8nBn5IN6ygVKyQQ94lp68pKqy
get_SystemDirectory
get_Registry
op_Equality
WindowsIdentity
IsNullOrEmpty
RegistryProxy
PGMVkpFY86wwnj2HMltl6ALRGO70XqzVSDu0IDOz
4cSVJGuRqDy7ARl1wGyhTc6R3sgU4D2zGWL8vFTz
gem56bEZWlSnWdJyADPLyefOYoD5ZjOyh4jT2goDIfgd4WoBCaB0ZPBoaJctiefWAGl99wdAnG0tFQidQQ991B2n5D0TOcz
Yqox6MWBZrV7dWf2qovArF3jXeJay0BCmolXzTBLRJqmL1szghJ55xz
WrapNonExceptionThrows
$94ff6bce-b0d4-4cfe-92cb-90b1b0a6b5e1
1.0.0.0
MyTemplate
14.0.0.0
My.Computer
My.Application
My.User
My.WebServices
4System.Web.Services.Protocols.SoapHttpClientProtocol
Create__Instance__
Dispose__Instance__
<generated method>
<generated method>
_CorExeMain
mscoree.dll
<?xml version="1.0" encoding="UTF-8" standalone="yes"?>
<assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0">
<assemblyIdentity version="1.0.0.0" name="MyApplication.app"/>
<trustInfo xmlns="urn:schemas-microsoft-com:asm.v2">
<security>
<requestedPrivileges xmlns="urn:schemas-microsoft-com:asm.v3">
<requestedExecutionLevel level="asInvoker" uiAccess="false"/>
</requestedPrivileges>
</security>
</trustInfo>
</assembly>
GQIOHJyedtKlfjfrVv70irAZB9d6rQVSotRyuNbiAvrUwVgaXZBteCcCQVLjCo2wkomnwVSXzFH7ula5BMLEFcw7vvAEWcq
Nb7xHJhBZjoFXiyVU2mzidn
XXUwWtHpx95M5t1p0y0HvGM
KDeaUMg8TWNzJ2dBLMpfOQj
ImkN45nypZWByehgvARcRgV
9kVNBQBgnT7omDHAtOfR964
U6yImqbMhPD5AnL7V4pCFus
mhAVIxPjOysgP36k6lEZzA==
xgT0habXJXGJdyN9s9nFaQ==
Q5ueCT+fxiWDAJtasXvxCg==
V/ar2fD9KEiCSdkke4InLA==
bTk3MsmCeVibseIaTwzTxQ==
%AppData%
nI33cY9XJmA3qNwq
\Log.tmp
vpamQp2r5B+99s29xqqeslFQ9ngDKnGrnwxf9cqf/UnQzb5JhSlmXH50JpTKLWWK
k1C5y76xh00xOyYBmYgzXA==
uP4EE3xDOczbGk95TtPg1By
RP4HMZaJj0TMqnIZqnp92Za
WScript.Shell
CreateShortcut
TargetPath
WorkingDirectory
[XWorm V3.1]
New Clinet :
UserName :
OSFullName :
https://api.telegram.org/bot
/sendMessage?chat_id=
&text=
powershell.exe
-ExecutionPolicy Bypass Add-MpPreference -ExclusionPath '
-ExecutionPolicy Bypass Add-MpPreference -ExclusionProcess '
M34Sumd011Kis61fU2ic51U
5z5Umd330fEBAV0PY4GG56v
mQoIPi9S46cGCfVSHxAG7pb
s6MsQOBkC0EsG5VjCIGldoO
tsaXuf1MeBXe3IoSVfahJ0Q
cWvSWbIeU0ONVSo50yrYHR7
qgIxvqw9SApWc8f3GEV3Baq
Microsoft
Service Pack
XWorm V3.1
dd/MM/yyy
\root\SecurityCenter2
Select * from AntivirusProduct
displayName
flIB6h8UMyvZZ9VGlzwUVWh
z2OBjj4fO7nhS3LnHkyhKxc
FrE9cAe40Y4NDDb3DzYLw6W
tHWHVoKe3xU9W59vSnBvrXj
xtV9gZqoMR6Z6AgY9A5hBU8
RQD0LIhF6Z2jDMTCjicuSEf
YVduXMlul0j4x6kEVLrnd8M
9s5d0GmJ9oPgypvdmBugZOC
0dMsJmUYDhlxuVN70fxbF8d
47KweZJDvsJdJW8pwOwo5AS
hEazYWfy7jKrWO0rQ9kI2Oo
S2yvu9f9gVD8iosoZTUgcSc
p4NMUvaKa3z2Sn2bzWEasf3
baeMOQSORva7UgnyftMW6xH
7QXFO7BmaxrEoEhZoq4boTv8sMjKSK5idEBA1jPXqQwwAnWIaSkThD3
gqKj71TdDkSTWLI0SkK7ockyZkk5ekPROgvOxkhYTroeaoUOYBRPkgc
uninstall
update
Urlopen
Urlhide
PCShutdown
shutdown.exe /f /s /t 0
PCRestart
shutdown.exe /f /r /t 0
PCLogoff
shutdown.exe -L
StartDDos
StopDDos
StartReport
StopReport
plugin
sendPlugin
savePlugin
OfflineGet
MessageBox
Plugin
Invoke
RunRecovery
Recovery
RunOptions
injRun
UACFunc
ngrok+
Plugin Error!
ToLower
Open [
-ExecutionPolicy Bypass -File "
eSfBHOssCcIMrReEaS24j6zzwMrVrrAfyAkmsIKIUBnQnfNZ2nUtilE
OPUzOO6guhIr3p0prfn716ZCvR6PYv31XVSQNwOpH5sTmqvFe1CIzNY
GoG1lCvKXWdPpc1GjOLpdZJSpI7u3eL7b9KPgNdm82k1aF0uOkwvck2
d1hrOCVAdsvPnaWorfJ0sTtBfbVY53xdGc1SQktTwjk5vhg1UYciBzA
qF8AHiwkp9fNANyprDCKYdJ6txIxzCi7qjDGvU7w4rIovYvfcQ4CErX
2F98MQzfPq1ZkUl68OrFplVwQ6VnqmzRmGG3wG4MC2WFPzomCv7OGpF
EefFku2BPxcj7VucL8NdtD4NoQp8w5LVPjfy3ocb2niLBMXJniZteIh
4V2HMEaOKC6osVdE7Zz7jIyK8Aw71fmwMBvMpMRIXUQZ6bKcLJfgM3J
hXlVuICVskHzKU38cuv8qDS6kmqRLNP58FLTqqPl6bsZfV87qqXuX5k
TLLIGhM7MAtd8RHgvNaQpFWNKBhc31w8ypVWCxq4GF2pFGrPLxnix3i
qylrqiG9iMRuTZHDmxWhon494RGFKPZWfXJBAOsDNZr39lwm7DWFOQg
TD818Gksv07PJNMZqYTvHSvH0DERPgnuu8nLWZqq4QG6Qf3ZEuu324b
k6Ihb3o3HuJrkY13EHnxHOXXmWFCGRrzzm1VjEYvcu0LYVTvaRjykXn
XQ8OETaF8PEBk8bHv6CBolSoj86Lp2vCR8P0K9gkuSEjZlQTzWy5y6L
qn1oYP3INDVITZiImf4COYDBVqdCL3NeFH4D9AXUjeQlfbxvPbLAx34
R8DmAP122i9JnFxhvmGUTnjkpRAxuqcBZ0fpq7VF02fpe2u2fidd0p9
POST / HTTP/1.1
Host:
Connection: keep-alive
Content-Type: application/x-www-form-urlencoded
User-Agent:
Content-length: 5235
attrib -h -s
*.* /s /d
@echo off
timeout 3 > NUL
" /f /q
2l9vseVOZbaCgZXLtLzKrKBIlAXdEIVhwDbPqItouLZztVsVxV9yqPK
XzelLlVZQfXbRlKkIKohIo7BG1eGmoCxpvzda9fBjFuWkgD0TIr4DdD
wscript.shell
Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced
ShowSuperHidden
windowstyle
cmd.exe
Arguments
/c start
&start
& exit
regread
HKEY_LOCAL_MACHINE\software\classes\
HKEY_LOCAL_MACHINE\software\classes\.
\defaulticon\
IconLocation
iconlocation
arguments
&start explorer
HKEY_LOCAL_MACHINE\software\classes\folder\defaulticon\
jR5jrVfLxOHn5VOK8scZvVcBJJDbUTwLaUIOYawdsq3NfWhEKGnlyjD
auDBWZIJjNIDcxdMswlWBwhR7sXQvspXSBoZHNeyRzrYCjfrkiiQZUB
CaspmXoy8s8WZkvuIq4epMsEQ7OyLxG0VNrt3UlAbWYsALzcAqjcabH
akU2xtbONu2lBFTKgF2VTExPd3CHdYo7Bezd9CY9avSpi0XISBTQirF
ToUpper
[SPACE]
Return
[ENTER]
Escape
LControlKey
[CTRL]
RControlKey
RShiftKey
[Shift]
LShiftKey
[Back]
Capital
[CAPSLOCK: OFF]
[CAPSLOCK: ON]
MainWindowTitle
ProcessName
R1NGmQx2L8xfCx5YgqcDcGanK4xfF65e7BImlFk4Hv9vaC6E9i3OQol
jGqg1MFYGXYC8qNR5eJmxd4k93y5UeI31VpA0EQJtxQ4Oqg7XkFYoYA
aXV6so2XtzUjjZ2ciVJKQt45qteA8dYb5Y6xbvPdky8bQxjE2yYb3eI
EbDlMbREzWiu00BTR0YJZpqBqnG2sbB3Dv6YsmGf3pV5QwpWlzKOrOM
o3QCewbTVYFfU4ebZH9I65QJyw5rpeEUKwJ7LwVb
Uems0EFr8L8QwyKdP3XYLJGvaPqyCH6ZXOyNnROr
x19P7tXLkNyxjnBQEL8VGTInZGNN5vCvrMlLZAb7
2XolV2gkTnLaoStbaFUtKXf0XzYa2Jyq6Br2VXCn
Ysu32gSx0cmovBDnZUygOGo8RJhL6P3bpv9YeYQm
3UaeUuwgBHGxRqfHHqJcKzenYdsgyLaNrtdHmbh0
e5a6OfsW0mSvupWalMgcVi8JdWag2jaGiNbRn1wk
xAdEvopJvXs96VzrTwWnxEum2dFt0Vz69kKZmivZ
mntdHdaoRNDqgREQEPwOHpboNWDvqoehRav12RTZ
RdMYHOA1nLI1U2iILvvzNewMfl9qtNMpQsvBNS4M
zpWNDumCA02CteJoaitggMbNNh0gGLTzv4RwFAoe
YTSKDvhWgqTuoQaJFivPLNXcr8SUbuFoxU9zZjtt
CEhn9ukm2KlYqmZqK0PbFrgRTGDo3Mr6YBqJ5URl
4TMN97wzjUXmlzCGKzpzZfVzC3oIMg4nWLNqhQh5
6yE4H6B9lrtUVJEu6XqttlrcEwWrlSqMDxEemD0Y
NS7PTIXuDyAEWPZTOx3snZ5PuijZGDdaPxDJL9jI
PvEbGxd9Fb27KByY72339tHTaeFVWvwTccuiXK0G
1KTP9RkwHvSWWwZnjHCBT800OmOuzMAcjLJoqQdo
AmhHbZ8frm7TBdqoEj4xhnLgLDaRfCyiBDABwcqE
4g38NPPmfMRGa9VvcUsGWdDqMumZk3ZNsRvyLDlm
Ib3V9hCTqKdr3wAi6NKMkfGbijg0FyOKVTNUn2Rt
7xYl8J3RBVi8ZOcQduaMkjuKLXEURLbM46E3WbI5
3IojDxt1WGfokVxAr4cEOhxAgv16m88CBxMGPtG4
Software\
Mozilla/5.0 (Windows NT 6.1; Win64; x64; rv:66.0) Gecko/20100101 Firefox/66.0
Mozilla/5.0 (iPhone; CPU iPhone OS 11_4_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/11.0 Mobile/15E148 Safari/604.1
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36
abcdefghijklmnopqrstuvwxyz
Err HWID
ToArray
cr5mQcq5t2E82WuCUJY4PDqRppcRsMy1DcOKR3SD
v829p9ToAFlgv0uXbfZWnTal4mViCdQsFTeuuIHO
7oVK1n7wARiMWnHaZ1V2pkuPW5McjeYGqC90bYSs
r0FFNeSOfRMbDDmsKnOVb1E1nQBxaXR49oPZzjoL
CPpyRlnik02nYcXcAG1qZm8omkjp8XvLqHmCnrMO
a6th7VkCUPeFgclKArfcuEcdO2QpNzkHRTYTXGiG
KMG44zv5nrvSkDnGI6dtWfrIdmPgSt7aAlZjx6jX
UR9Ya4dquhuOPgijlDLj6rbN474j3SWhwyzuU7M1
KEhStIrEwLvPZAgA6gsexMUUlvwfbnD9rCeCciLy
zoSRDYlahElZ5VvAvWx415e8ewfSpIKjprbyAOY7
gUFWcpEQPdGWaWekx1Ifqa0OjBqSHi7Bd3bj4YQn
GuL8nHbdpT6OrHkcFDtnWT8NkjA6nMzzRLPFTU0o
1EfpsbnRoyGleCeCJzzhyUQBE48rdh9BGZBb47vV
HRdFHalmBtG8TCdMrNOfIngosIQawWBFJV7yDDIP
x8vrFYj1FX6AdoJJO3pRKtj59oHFgNkW7KX7Dwtg
Pu5d9lw0MnJnWivFDvYWfTBYd6xr9QwbLFFiOlRA
C42tsMY1fgqiZu50ZvU1GoxlMjoBESBJ6xmlBNc1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VS_VERSION_INFO
VarFileInfo
Translation
StringFileInfo
000004b0
FileDescription
FileVersion
1.0.0.0
InternalName
XClient.exe
LegalCopyright
OriginalFilename
XClient.exe
ProductVersion
1.0.0.0
Assembly Version
1.0.0.0
Antivirus Signature
Bkav Clean
Lionic Trojan.Win32.Crysan.4!c
tehtris Clean
MicroWorld-eScan Trojan.GenericKD.66717914
CMC Clean
CAT-QuickHeal Clean
McAfee Artemis!8018E9F1A6E6
Malwarebytes Backdoor.XWorm
Zillya Clean
Sangfor Trojan.Win32.Save.a
K7AntiVirus Trojan ( 00592e8b1 )
BitDefender Trojan.GenericKD.66717914
K7GW Trojan ( 00592e8b1 )
CrowdStrike win/malicious_confidence_100% (W)
BitDefenderTheta Gen:NN.ZemsilF.36164.em0@aaRPRzn
VirIT Trojan.Win32.MSIL_Heur.B
Cyren W32/MSIL_Agent.BUD.gen!Eldorado
Symantec ML.Attribute.HighConfidence
Elastic malicious (high confidence)
ESET-NOD32 a variant of MSIL/Agent.DWN
APEX Malicious
Paloalto generic.ml
ClamAV Clean
Kaspersky HEUR:Backdoor.MSIL.Crysan.gen
Alibaba Backdoor:MSIL/Crysan.decfeb86
NANO-Antivirus Clean
ViRobot Trojan.Win.Z.Agent.75776.CI
Rising Backdoor.njRAT!1.9E49 (CLASSIC)
TACHYON Clean
Sophos Mal/Generic-S
Baidu Clean
F-Secure Malware.LNK/Runner.VPGD
DrWeb BackDoor.XWormNET.1
VIPRE IL:Trojan.MSILZilla.25346
TrendMicro TROJ_GEN.R002C0DDR23
McAfee-GW-Edition BehavesLike.Win32.Generic.lh
Trapmine malicious.high.ml.score
FireEye Generic.mg.8018e9f1a6e6f4c6
Emsisoft Trojan.GenericKD.66717914 (B)
Ikarus Trojan.MSIL.Agent
GData Trojan.GenericKD.66717914
Jiangmin Clean
Webroot W32.Trojan.MSILZilla
Google Detected
Avira LNK/Runner.VPGD
Antiy-AVL Clean
Gridinsoft Trojan.Win32.Agent.cl
Xcitium Malware@#369dcbvlzuoaa
Arcabit IL:Trojan.MSILZilla.D6302
SUPERAntiSpyware Clean
ZoneAlarm HEUR:Backdoor.MSIL.Crysan.gen
Microsoft Trojan:MSIL/XWorm.C!MTB
Cynet Malicious (score: 100)
AhnLab-V3 Backdoor/Win.AsyncRat.C5360693
Acronis suspicious
VBA32 Malware-Cryptor.MSIL.AgentTesla.Heur
ALYac IL:Trojan.MSILZilla.25346
MAX malware (ai score=87)
DeepInstinct MALICIOUS
Cylance unsafe
Panda Trj/GdSda.A
Zoner Clean
TrendMicro-HouseCall TROJ_GEN.R002C0DDR23
Tencent Msil.Backdoor.Crysan.Pgil
Yandex Clean
SentinelOne Static AI - Malicious PE
MaxSecure Trojan.Malware.300983.susgen
Fortinet MSIL/Agent.DWN!tr
AVG Win32:XWorm-C [Rat]
Avast Win32:XWorm-C [Rat]
No IRMA results available.