Static | ZeroBOX

PE Compile Time

2023-06-22 09:25:53

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00002000 0x0029c7c0 0x0029c800 4.10630645555
.rsrc 0x002a0000 0x00000570 0x00000600 3.93812737252

Resources

Name Offset Size Language Sub-language File type
RT_VERSION 0x002a00a0 0x000002e4 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_MANIFEST 0x002a0384 0x000001ea LANG_NEUTRAL SUBLANG_NEUTRAL XML 1.0 document, UTF-8 Unicode (with BOM) text, with CRLF line terminators

!This program cannot be run in DOS mode.
`.rsrc
0YdZX
0YdZX
0YdZX
0YdZX
0Y @B
0YdZX
; ATJ[Y {
U2)>a
%=4y 'c
3Y |XGUa}O
z akE2a s;
nf .V.
dV a}Q
;'f- o
nf .V.
:43a}j
U2)>a
v4.0.30319
#Strings
Ocjmrfmoys
Ocjmrfmoys.exe
<Module>
ModelRecordProperty
SpecFlow.Properties
Object
System
mscorlib
ReponseAttrPool
Ocjmrfmoys.Pools
Resources
Hhtzno.Properties
MerchantUtilsStrategy
Ocjmrfmoys.Strategies
Creator
Ocjmrfmoys.Exporters
Record
PublisherCallbackRole
SpecFlow.Roles
WrapperInterceptorBridge
SpecFlow.Bridges
<Module>{fe123d68-4347-418f-ada8-1fded4877ca7}
f8DB72D064F54A45
Boolean
m8DB72D064F54A45
.cctor
InstantiateMethod
CompareMethod
InstantiateInstance
RateInstance
List`1
System.Collections.Generic
Assembly
System.Reflection
GetTypes
SetInstance
InvokeMember
String
BindingFlags
Binder
CollectInstance
PushMethod
RegisterMethod
SetMethod
PopMethod
ToArray
ValidateMethod
DisableMethod
ListInstance
Monitor
System.Threading
Convert
ToByte
ReadMethod
Encoding
System.Text
get_ASCII
RemoveMethod
GetString
FillMethod
Substring
NewMethod
ForgotMethod
get_Length
CallMethod
InvokeMethod
instance
ResourceManager
System.Resources
_Interceptor
CultureInfo
System.Globalization
DefineMethod
get_ResourceManager
get_Assembly
get_Culture
set_Culture
get_Bzvgswh
ConcatMethod
PublishMethod
ChangeMethod
RuntimeTypeHandle
GetTypeFromHandle
ResolveMethod
StartMethod
GetObject
Culture
Bzvgswh
_Iterator
DateTime
MoveMethod
DateTimeKind
RateMethod
InitMethod
EnableMethod
DeleteInstance
caller
TimeSpan
get_Hour
get_Minute
StringBuilder
Append
op_LessThan
get_Ticks
get_Month
get_Minutes
get_Hours
get_Second
get_Kind
get_Day
Negate
get_Year
PopInstance
Subtract
AddTicks
Concat
InvalidOperationException
Replace
ToLocalTime
DestroyInstance
config
ConnectMethod
GetMethod
WriteMethod
AwakeMethod
TimeZoneInfo
get_Local
DeleteMethod
GetUtcOffset
AssetMethod
RestartMethod
ComputeMethod
get_UTF8
ReflectMethod
GetBytes
SortMethod
m_Comparator
Stack`1
m_Policy
_Property
Dictionary`2
FieldInfo
PropertyInfo
CustomizeMethod
PrepareInstance
set_Length
get_Chars
IsWhiteSpace
ToString
LogoutInstance
readsetup
polPtr
CountInstance
get_Count
CloneInstance
connection
UInt32
System.Collections
IDictionary
Decimal
GetGenericTypeDefinition
get_InvariantCulture
TryParse
IFormatProvider
NumberStyles
GetElementType
get_IsGenericType
GetGenericArguments
get_Item
GetConstructor
ConstructorInfo
Nullable`1
get_IsPrimitive
get_IsArray
op_Inequality
ChangeType
op_Equality
SetValue
get_IsEnum
DefineInstance
Double
set_Item
MoveInstance
MemberInfo
reference
DataMemberAttribute
System.Runtime.Serialization
StringComparer
get_OrdinalIgnoreCase
IEqualityComparer`1
IgnoreDataMemberAttribute
IsDefined
get_Name
Attribute
GetCustomAttribute
IsNullOrEmpty
VisitInstance
Enumerator
KeyValuePair`2
MethodInfo
GetProperties
get_FieldType
MoveNext
DefaultValueAttribute
System.ComponentModel
get_Value
get_Current
IDisposable
Dispose
TryGetValue
GetEnumerator
GetFields
FormatterServices
GetUninitializedObject
EmptyTypes
CollectMethod
StopMethod
InterruptMethod
ResetMethod
ListMethod
CreateMethod
IncludeMethod
ExcludeMethod
VerifyMethod
IndexOf
SetupMethod
FlushMethod
PatchMethod
VisitMethod
FindMethod
PrintMethod
LogoutMethod
CreateInstance
CloneMethod
Invoke
LoginMethod
InsertMethod
MapMethod
PrepareMethod
CalculateMethod
QueryMethod
OrderMethod
IsDigit
ViewMethod
Contains
TestMethod
MethodBase
CountMethod
DestroyMethod
UpdateMethod
SearchMethod
get_PropertyType
RunMethod
TypeDescriptor
GetConverter
TypeConverter
AddMethod
ConvertFromString
SelectMethod
CancelMethod
GetSetMethod
ManageMethod
RevertMethod
get_IsPublic
CheckParam
get_IsStatic
PostParam
ConnectInstance
InitInstance
containsinfo
RegisterInstance
AddInstance
isparam
overridepol
CalcParam
InstantiateParam
m_Indexer
CompareParam
SelectInstance
InsertInstance
result
Single
IEnumerator
UInt16
GetType
UInt64
get_Keys
ICollection
GetUnderlyingType
PublishInstance
SetParam
PushParam
RegisterParam
PopParam
ValidateParam
DisableParam
CallParam
InvokeParam
ReadParam
AppendFormat
RemoveParam
FillParam
NewParam
ForgotParam
DefineParam
ConcatParam
PublishParam
ChangeParam
ResolveParam
StartParam
IEnumerable
MoveParam
RateParam
InitParam
EnableParam
AssetParam
GetValue
RestartParam
get_CanRead
ConnectParam
GetParam
WriteParam
AwakeParam
DeleteParam
ComputeParam
m_17154b3ea26a4f2ca895888700445d0c
m_757ffc413b794cb1946ec8f32323d215
m_178a4bdb82f14bbf9dd42214a775c3cc
m_463dbc500f124d3db63592a5ccec9556
m_3d590329356644b69e28bbfd150a5de0
m_13fcd49039e1487a8e80d6f0dd01c4c2
m_e8bfdac509e247228ad6ef5aae3733c0
m_ca7208d1fb474b7483e976d8f2103808
m_044631a209164d468dadaaa67b124a3d
m_f372acae93d7435c91969cd6813c3732
m_b32a00558b5341ed81cd95e366d4347f
m_edc65df5859d4ae3bcdc383858a1262b
m_2c1e561987a54f01a81e22a10d5a12e9
m_e4097acc58784d68bc00c817d531ade5
m_717ae151366c4fc58985f0e1e03f7dd9
m_f184a9d6779443be90595a1e24d06009
m_d7f29dbf216f48448d5011efa12008ee
m_457d5e5e609544eeb87dd5407a968c81
m_bcc2480796b74f0e8fb3249854f118cd
m_70faae13e8d0402aa7ebb8d538340df6
m_6aec60966be64988b48cb49e5d2b0374
m_b719a53d09f24d95a0a1f4a84e92a092
m_fc0975cbbfec4045b54effa698adaffe
m_968e4bc65c9c46358ca646f8073274bb
m_00f8514b4d524af4a13f347bf92753dc
m_0508a8f39fa54e418742b1fb91db4bf8
m_3ff45ce253eb4df6a5ec151c2d181c35
m_aa5a5b555a1d404aa3dd7743647d61f1
m_9d1d35990a764d4297c26da4312d0efa
m_2a191d1af8144da8a1f8cacfbdabd46b
m_e8e930db30f946eaa094a8a7acd17fca
m_b20e6191f8464a5da9892d8da39f518f
m_e30cbd16bd85489fa7bdd693f19a1b78
m_580b67123d2c4d76b8c233dbd6fbdf21
m_dfb733b98d8a4f6ea0ae652af2e7e835
m_507e7be4b417419d864178e935b7532b
m_a18379c7521a4a83b96b27730252bd9c
m_842a7269d4aa463d8db103e5d1ec61b2
m_715c6aa162674f048cbdcba41226c949
m_f9057671ef2c4a86bd5c171ed5faa8f3
m_1cb31099e91b402a9fe27a17b69641c1
m_d8b251c919a94ab4915e69e9c4f89f1a
m_2395c0c3d07d4f96a4d9f5e838a8a3df
m_91502738b6f9454d9aeb4f954156e97f
m_d0d1b1afe88742dd9727410b137e8322
m_2dfc50caad6747f5a97bb13f6dd59d32
m_4752a6daf87d46d6bac2951e44f99f11
m_5c3587297efd4607af16c7182dd4ec37
m_eefa76326a5e4f96b679884e9dc6ab49
m_f045fce7509f47fdb7a91d390108f0c4
m_7befe2931e6146759e4f2acbd95ca1c3
m_f8a12e5fd98849b2acbc50904be99ede
m_a74548dd9c6145f88b96db4a231cd0a4
m_2034e1d8697d476eba45698787311de2
m_f44a4c611e344410883524e74334a946
m_8167c8e53bef440c8cf4792b1b706bc6
m_ac9a4bc54c6b40e8bb87cf82bdab70c7
m_817957dee29c4774a9a8daf1fec93099
m_c427ce7b739249d99befc262a999a940
m_a5a7f2d55a604c12b31e4bc07b1dc39e
m_1a559f5cd2a3418d841053794214d090
m_79739ff7e306405590333ab811702fab
m_6b08930587264e5886fc77207c1da0d4
m_4b90229d6dec4c8d8707116c98f3a5ef
m_a1c3d48ce874413498eec45415fbf6b2
m_c344260c40ba4d57a3074452e8305259
m_3c6a1c07b04d443ca543703d2672ea2e
m_796cb508fa75487788b71b62c573d386
m_936d893b54d741979792c55ea95ca0fc
m_87da8c11aa0342b7a3ff1eaf8828c497
m_5fe3c8a513724527ab9d7f6290ec783d
m_ed84c3c73c664d1eb5e6d115431358fc
m_ce4c8c3389e64eed92c22eb9e0f26225
m_d35b0ca1fc5940798783f280935dc93e
m_96fa5f3de1c547339fc90bba946bda5d
m_c7d0a539b8f44bab81bef25c49d35323
m_67b895adf35941eb93148a25f8625e5b
m_a83938dbd35c4202a43fee983789631a
m_a8062ddaff3a45c28d180e8aa66c39da
m_058239c854f24306b05bbcfa51d045d2
m_1a298f072b474b3d9c3bf780331162c9
m_1788933750f14a419e8f2b6aabdd79ee
m_a5cdd59c27a241e3ac4e2a63eb3235aa
m_93676e0cc5af43b599c9945050cb3e12
m_2002343ba8254c37961d394dcb34cd03
m_407a8dbf6dc141398d6da7ac19ee4091
m_ada3a79810654b2f8fddf0be0a41990d
m_7882cb36915246fd812edae9fde39991
m_f6dff8f670404a209e88c8eff01d9cd0
m_9a60b5e8820647deb5374b1d01052cad
m_d89b10b5b0c045d3b3b409ddced1fac2
m_69d96e3608d448cbaf010d39ebba7f70
m_c38ec84fbe25427793f1c5d74241136f
m_fa1aec123bcb436e8b4be70582e38b9a
m_78d5e4e01c3b4db89de29f432b462980
m_3fa4fe2566674732904d85d9a5932644
m_eef99036cdde4abcb610b9077f8593d5
m_4500951eb4ce4a0c8799ca81f3e25dfd
m_a79b200d74f541bab82aace638846388
m_00fb6f97cb674669a28e432ff437baee
m_61d9b207c3864aa78bb01322e5dd7f77
m_39e2dd6eb37a4d368424685612b0c650
m_9abf579b62b54845b7355609d7a003a8
m_90aef9073f9747b4a900c2cc18304633
m_13c9025a7f0c4ead804f0a1cd66491e8
m_ba70675dede74b488f2442132002f626
m_ae132dbf9a714ae6a371c77669878e68
m_de2db397eb964f328d9e881b84e10d93
m_3bead89e1db945f18a5e50593c2e8dc8
m_84f13ef476f647ed8d008fa02134f830
m_02b91ce29a0e43f6ad1bcfcda094c431
m_9392440f58924c5ea1089fb22a82538f
m_68a3c778532746f68400d2770597eda3
ReflectParam
bf1f004a249cc417a84ac66e7fb43282c
ResetParam
SortParam
CustomizeParam
CompilationRelaxationsAttribute
System.Runtime.CompilerServices
RuntimeCompatibilityAttribute
DebuggableAttribute
System.Diagnostics
DebuggingModes
AssemblyTitleAttribute
AssemblyDescriptionAttribute
AssemblyConfigurationAttribute
AssemblyCompanyAttribute
AssemblyProductAttribute
AssemblyCopyrightAttribute
AssemblyTrademarkAttribute
GuidAttribute
System.Runtime.InteropServices
AssemblyFileVersionAttribute
TargetFrameworkAttribute
System.Runtime.Versioning
ComVisibleAttribute
GeneratedCodeAttribute
System.CodeDom.Compiler
DebuggerNonUserCodeAttribute
CompilerGeneratedAttribute
EditorBrowsableAttribute
EditorBrowsableState
ExcludeFromCodeCoverageAttribute
System.Diagnostics.CodeAnalysis
ExtensionAttribute
ThreadStaticAttribute
Hhtzno.Properties.Resources.resources
WrapNonExceptionThrows
$d88e6dbc-9810-4ab9-b82c-8d1821337a93
1.0.0.0
.NETFramework,Version=v4.8
FrameworkDisplayName
.NET Framework 4.8A
3System.Resources.Tools.StronglyTypedResourceBuilder
16.0.0.0
Nerdbank.GitVersioning.Tasks
3.4.205.15684
lSystem.Resources.ResourceReader, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089#System.Resources.RuntimeResourceSet
PADPADP
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
<?xml version="1.0" encoding="UTF-8" standalone="yes"?>
<assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0">
<assemblyIdentity version="1.0.0.0" name="MyApplication.app"/>
<trustInfo xmlns="urn:schemas-microsoft-com:asm.v2">
<security>
<requestedPrivileges xmlns="urn:schemas-microsoft-com:asm.v3">
<requestedExecutionLevel level="asInvoker" uiAccess="false"/>
</requestedPrivileges>
</security>
</trustInfo>
</assembly>
tqjkSGpvY
Hhtzno.Properties.Resources
Bzvgswh
000000
invalid datetime format. value:
"\nrtbf/
"\nrtbf
u{0:X4}
Bzvgswh
VS_VERSION_INFO
VarFileInfo
Translation
StringFileInfo
000004b0
Comments
CompanyName
FileDescription
FileVersion
1.0.0.0
InternalName
Ocjmrfmoys.exe
LegalCopyright
LegalTrademarks
OriginalFilename
Ocjmrfmoys.exe
ProductName
ProductVersion
1.0.0.0
Assembly Version
1.0.0.0
Antivirus Signature
Bkav Clean
Lionic Clean
Elastic malicious (high confidence)
MicroWorld-eScan Clean
CMC Clean
CAT-QuickHeal Clean
McAfee Clean
Malwarebytes Malware.AI.1024994840
Zillya Clean
Sangfor Clean
K7AntiVirus Clean
BitDefender Clean
K7GW Clean
Cybereason malicious.65a8bf
BitDefenderTheta Clean
VirIT Trojan.Win64.MSIL_Heur.A
Cyren Clean
Symantec ML.Attribute.HighConfidence
tehtris Generic.Malware
ESET-NOD32 a variant of MSIL/GenKryptik.GKZW
APEX Malicious
Paloalto Clean
ClamAV Clean
Kaspersky HEUR:Trojan.Win32.Generic
Alibaba Clean
NANO-Antivirus Clean
ViRobot Clean
Rising Clean
TACHYON Clean
Sophos ML/PE-A
Baidu Clean
F-Secure Heuristic.HEUR/AGEN.1325431
DrWeb Clean
VIPRE Clean
TrendMicro Clean
McAfee-GW-Edition BehavesLike.Win64.Generic.vt
Trapmine Clean
FireEye Clean
Emsisoft Clean
Ikarus Trojan.MSIL.Inject
GData Clean
Jiangmin Clean
Webroot Clean
Google Detected
Avira HEUR/AGEN.1325431
Antiy-AVL Clean
Gridinsoft Clean
Xcitium Clean
Arcabit Clean
SUPERAntiSpyware Clean
ZoneAlarm HEUR:Trojan.Win32.Generic
Microsoft Trojan:Win32/Sabsik.FL.B!ml
Cynet Malicious (score: 100)
AhnLab-V3 Clean
Acronis Clean
VBA32 Clean
ALYac Clean
MAX Clean
DeepInstinct MALICIOUS
Cylance Clean
Panda Clean
Zoner Clean
TrendMicro-HouseCall Clean
Tencent Clean
Yandex Clean
SentinelOne Clean
MaxSecure Trojan.Malware.300983.susgen
Fortinet Clean
AVG CrypterX-gen [Trj]
Avast CrypterX-gen [Trj]
CrowdStrike win/malicious_confidence_90% (D)
No IRMA results available.