Static | ZeroBOX

PE Compile Time

2023-07-17 00:05:30

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00002000 0x00003f88 0x00004000 6.29243175271
.rsrc 0x00006000 0x00000a24 0x00000c00 5.20106662678

Resources

Name Offset Size Language Sub-language File type
RT_GROUP_ICON 0x00006100 0x00000006 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_VERSION 0x000064a0 0x00000398 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_VERSION 0x000064a0 0x00000398 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_MANIFEST 0x00006838 0x000001ea LANG_NEUTRAL SUBLANG_NEUTRAL XML 1.0 document, UTF-8 Unicode (with BOM) text, with CRLF line terminators

!This program cannot be run in DOS mode.
`.rsrc
v4.0.30319
#Strings
<LoadAssemblyFromEncryptedUrl>d__10
<>u__1
Task`1
AsyncTaskMethodBuilder`1
TaskAwaiter`1
List`1
kernel32
<str01>5__2
<str02>5__3
<Startup>d__14
<super>5__4
get_UTF8
<Module>
MySql.Installer.Core.MSI
System.IO
FromArgb
mscorlib
System.Collections.Generic
CancelAsync
set_Enabled
DownloadFailed
get_MOSAuthFailed
get_Cancelled
get_InvokeRequired
add_Elapsed
_authenticated
AwaitUnsafeOnCompleted
get_IsCompleted
method
set_Mode
set_AutoScaleMode
set_SizeMode
PictureBoxSizeMode
PaddingMode
CipherMode
HtmlDecode
set_Image
EndInvoke
BeginInvoke
set_Visible
RuntimeTypeHandle
GetTypeFromHandle
msiFile
Console
get_InstallerTitle
set_FormBorderStyle
FontStyle
set_Name
set_AccessibleName
ReadLine
WriteLine
IAsyncStateMachine
SetStateMachine
stateMachine
ValueType
MySQLInstaller.Core
resourceCulture
Capture
MethodBase
ButtonBase
GetWebResponse
Dispose
Create
MulticastDelegate
<>1__state
STAThreadAttribute
CompilerGeneratedAttribute
GuidAttribute
DebuggableAttribute
ComVisibleAttribute
AssemblyTitleAttribute
AsyncStateMachineAttribute
AssemblyTrademarkAttribute
TargetFrameworkAttribute
DebuggerHiddenAttribute
AssemblyFileVersionAttribute
AssemblyConfigurationAttribute
AssemblyDescriptionAttribute
CompilationRelaxationsAttribute
AssemblyProductAttribute
AssemblyCopyrightAttribute
AssemblyCompanyAttribute
RuntimeCompatibilityAttribute
get_Value
set_Value
set_Size
set_AutoSize
set_ClientSize
dwSize
ISupportInitialize
set_Padding
Encoding
System.Runtime.Versioning
FromBase64String
DownloadString
ToString
GetString
System.Drawing
InfoDialog
MyOracleSupportCredentialsDialog
ShowDialog
get_Length
AsyncCallback
SetProgressCallback
callback
remove_Tick
killProcessTimer_Tick
add_Click
TransformFinalBlock
get_Task
Marshal
set_Interval
StatusLabel
AuthenticationResultLabel
System.ComponentModel
AuthenticationResultPanel
kernel32.dll
user32.dll
ContainerControl
encryptedUrl
get_BaseStream
get_EndOfStream
get_Item
System
SymmetricAlgorithm
CloseForm
MainForm
ICryptoTransform
set_Icon
set_AutomaticDecompression
set_Location
System.Globalization
System.Reflection
ControlCollection
GroupCollection
set_StartPosition
FormStartPosition
SetException
set_AccessibleDescription
AuthenticateButton
OkButton
DialogCancelButton
MethodInfo
CultureInfo
GetPropertyInfo
get_MySQLInstallerLogo
Bitmap
MsiInterop
set_TabStop
DownloadProgressBar
StreamReader
TextReader
<>t__builder
sender
get_ResourceManager
ComponentResourceManager
ElapsedEventHandler
_killProcessTimer
DownloadTimeOutTimer
IContainer
MySql.Installer.Updater
MySQLInstallerUpdater
GetAwaiter
GetDelegateForFunctionPointer
set_BackColor
set_UseVisualStyleBackColor
get_MySQLInstallerConfig_Error
get_Error
.cctor
CreateDecryptor
UIntPtr
System.Diagnostics
DecompressionMethods
System.Runtime.InteropServices
System.Runtime.CompilerServices
System.Resources
DebuggingModes
MySql.Installer.Updater.Properties
InfoDialogProperties
GetErrorDialogProperties
MySql.Utility.Classes
AsyncCompletedEventArgs
System.Threading.Tasks
MySql.Installer.Core.Controls
get_Controls
System.Windows.Forms
MySql.Utility.Forms
System.Text.RegularExpressions
get_Groups
System.Timers
get_Success
GetProcAddress
lpAddress
address
progress
MySql.Utility.Structs
components
GetObject
object
lpflOldProtect
flNewProtect
System.Net
op_Explicit
EndInit
BeginInit
GraphicsUnit
toDefault
IAsyncResult
InfoDialogResult
GetResult
SetResult
result
CookieAwareWebClient
_webClient
Component
get_EntryPoint
set_Font
Convert
HttpWebRequest
GetWebRequest
request
downloadUpdate_TimedOut
SuspendLayout
ResumeLayout
PerformLayout
MoveNext
System.Text
get_Text
set_Text
GetConsoleWindow
ShowWindow
set_TabIndex
InstallerLogoPictureBox
AuthenticationResultPictureBox
set_ControlBox
PasswordTextBox
UsernameTextBox
ToArray
set_Key
System.Security.Cryptography
Assembly
LoadLibrary
MySQL.Utility
WebUtility
IsNullOrEmpty
3RuinedKiss.Ruin+<LoadAssemblyFromEncryptedUrl>d__10
RuinedKiss.Ruin+<Startup>d__14
WrapNonExceptionThrows
RuinedKiss
Copyright
Ruined 2022
$55e2bd19-c8cc-4fb6-8cfd-ac7d8a74ad04
1.0.0.0
.NETFramework,Version=v4.8.1
FrameworkDisplayName
.NET Framework 4.8.1
<?xml version="1.0" encoding="UTF-8" standalone="yes"?>
<assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0">
<assemblyIdentity version="1.0.0.0" name="MyApplication.app"/>
<trustInfo xmlns="urn:schemas-microsoft-com:asm.v2">
<security>
<requestedPrivileges xmlns="urn:schemas-microsoft-com:asm.v3">
<requestedExecutionLevel level="asInvoker" uiAccess="false"/>
</requestedPrivileges>
</security>
</trustInfo>
</assembly>PAPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPAD
kernel32.dll
plr472E+LqoBnoOJoGur6g==
KMEVtRzxG0oWl/vO4tl88v4hJcBNIzsoo8gHTKMPmoU=
e0/XP9DAuyMsnxHqHx/8aQ==
5qe3XaXKeNMDab8wKSnipA==
dkv9CkI1PmrC4Eksq70p1A==
84an+sojPMUhvVs7dcNmL4snwf1ox3qOIiehXxnrjuehdZtlgllWcIy+6n2pC6Sw
VS_VERSION_INFO
VarFileInfo
Translation
StringFileInfo
000004b0
CompanyName
FileDescription
FileVersion
5.0.5.6
InternalName
LegalCopyright
2023
OriginalFilename
ProductName
ProductVersion
5.0.5.6
Comments
VS_VERSION_INFO
VarFileInfo
Translation
StringFileInfo
040904b0
CompanyName
FileDescription
FileVersion
5.0.5.6
InternalName
LegalCopyright
2023
OriginalFilename
ProductName
ProductVersion
5.0.5.6
Comments
Antivirus Signature
Bkav Clean
Lionic Trojan.Win32.Fsysna.4!c
tehtris Clean
MicroWorld-eScan Trojan.GenericKD.68222557
FireEye Trojan.GenericKD.68222557
CAT-QuickHeal Clean
McAfee Artemis!F7D1117ACE1E
Malwarebytes Generic.Malware/Suspicious
VIPRE Clean
Sangfor Trojan.Msil.Kryptik.Vu4x
K7AntiVirus Clean
BitDefender Trojan.GenericKD.68222557
K7GW Clean
CrowdStrike win/malicious_confidence_100% (W)
Baidu Clean
VirIT Trojan.Win64.MSIL_Heur.A
Cyren Clean
Symantec ML.Attribute.HighConfidence
Elastic malicious (high confidence)
ESET-NOD32 a variant of MSIL/Kryptik_AGen.BBP
APEX Clean
Paloalto Clean
ClamAV Clean
Kaspersky HEUR:Trojan.MSIL.Fsysna.gen
Alibaba Clean
NANO-Antivirus Clean
ViRobot Clean
Rising Malware.Obfus/MSIL@AI.85 (RDM.MSIL2:eMD2vVQ4V+PBZgmCI/3gHg)
Emsisoft Trojan.GenericKD.68222557 (B)
F-Secure Clean
DrWeb Clean
Zillya Clean
TrendMicro Clean
McAfee-GW-Edition Artemis!Trojan
Trapmine Clean
CMC Clean
Sophos Mal/Generic-S
SentinelOne Static AI - Suspicious PE
GData Trojan.GenericKD.68222557
Jiangmin Clean
Webroot W32.Trojan.Gen
Google Detected
Avira Clean
MAX malware (ai score=81)
Antiy-AVL Clean
Gridinsoft Clean
Xcitium Clean
Arcabit Trojan.Generic.D410FE5D
SUPERAntiSpyware Clean
ZoneAlarm HEUR:Trojan.MSIL.Fsysna.gen
Microsoft Trojan:Win32/Casdet!rfn
Cynet Clean
AhnLab-V3 Clean
Acronis Clean
BitDefenderTheta Clean
ALYac Clean
TACHYON Clean
DeepInstinct MALICIOUS
VBA32 Clean
Cylance unsafe
Panda Trj/Chgt.AD
Zoner Clean
TrendMicro-HouseCall TROJ_GEN.R002H0DGH23
Tencent Clean
Yandex Clean
Ikarus Win32.Outbreak
MaxSecure Clean
Fortinet MSIL/Kryptik_AGen.BBP!tr
AVG Win64:MalwareX-gen [Trj]
Avast Win64:MalwareX-gen [Trj]
No IRMA results available.