Static | ZeroBOX

PE Compile Time

2023-07-25 16:17:19

PE Imphash

f34d5f2d4577ed6d9ceec516c1f5a744

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00002000 0x00011894 0x00011a00 6.04437557077
.rsrc 0x00014000 0x0000ce56 0x0000d000 4.6638581343
.reloc 0x00022000 0x0000000c 0x00000200 0.101910425663

Resources

Name Offset Size Language Sub-language File type
RT_ICON 0x0002044c 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x0002044c 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x0002044c 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x0002044c 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x0002044c 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x0002044c 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x0002044c 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x0002044c 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_GROUP_ICON 0x000208b4 0x00000076 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_VERSION 0x0002092c 0x00000340 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_MANIFEST 0x00020c6c 0x000001ea LANG_NEUTRAL SUBLANG_NEUTRAL XML 1.0 document, UTF-8 Unicode (with BOM) text, with CRLF line terminators

Imports

Library mscoree.dll:
0x402000 _CorExeMain

!This program cannot be run in DOS mode.
`.rsrc
@.reloc
v4.0.30319
#Strings
0I=I#IHI[
9sTfLfCLy99Gzx91XcgVsxyoDnbNqkmZ0FzRjKIQkIi7X0
rfskzSjoWc0
VGbWtRD8UjxnQd9d5qPw3DnC26f0
UV8b8NuMWiSxCN6x9ElMZZRKkYPpQvFdKMvWJWQBKSw93RirQi0
QoMRigm6H4jlpZnpGiGORZcnB0xBPYZqrumsGjn5qiZn5yPdRlBZVScz5olj0
KggeSUfVpj0
KeWlKsSq7jSAaDRFxdrTvAK6XZxpuZXMDPWxovD9dMR0ZpCx9v0
Wib38pIn621
iKDJnE6pzFZpb4Hy3ka6sohHDODErkXAbvi7WYozoZyMZBKmqAR1r5mui8I41
RwIloQHYILj61Gu4QFeiVI8FvYDJ6N8FcDRO0oQKBbF4D1
BDSNbkogQR1
T2vxG1rOmY1
_Closure$__1
IEnumerable`1
ThreadSafeObjectProvider`1
List`1
KjN0Yfg94MtCZ4wWse1
AcNrERqqPBatr5FKZvKXc6mjFQk1
4RLTXWOV7hUDqy0OEv1
uUs9cToBfOo5K4dVlidWx5Vq8by1
Microsoft.Win32
UInt32
ReadInt32
ToInt32
L1blcwAQ0g7rQUV1Cedx1QcbKzZEE3ia7B6y7JGSP8CR72
A94xeVayiPSJ6WbyuDS0ecHx2p18qT4ZjeazPX7OvJYS2hcKqC2
6CGlP0zbHVBL61na1S7Dzo7txqPZsjWLSfnZE6u6UF8LHttxGLu0MPtP9m1d7GAcGOG2
ET90Vwoah71VXJoI0Nn7myiu0qO2
8w83KbWHEUGXsOxhQsuFFOMnfg6kOy7IOxJsLldjW4e18nHQFDBcjVNIlXqlzjXKYrZ2
Func`2
WIAucK9Hu5DsTN8FOhH4VHMgbRQLS9bojqUzAnLzTg7gW3k9S1lmNZOD28My1r6qY9h2
1XvGYF33mJNwEAFn7nJIdmLtXcOvEkikh19tOGDNbQsllnwo6QheEpPBHsAp1h5bGjsPNxP8LRiyGFdC5t2
KAVvi50rL5U2Y4nrMiG33
0G9gv0VjPS3
vl8gvMktL0Zgb6vgFW3
yCGOz0a48qIPmwBlkykgkchfCBP9ISEstYS74jll9PJ8F2w7dlxfRMyA3q0f3
X74oJHJEHPXVxCofdSIpcN8jpnKQZueUn5ykBya2hTkb5EHAXT0GhV2cUmm3mGzROMk3
gr7WwktrWgmVogXg3es6SGyIGWVzl8Bx3
NeoEv1mqv54
hLNQHjY8564
za5e77IM5W3xbhhxjsM02bBLL7zViL6W4
43rW79NhoQjP3Jux5jIzEb0q6Sl4
53rNOGG7BD50CaVrhPNmktCFUiDY4aZ3zcdLDYpKLRU3m4
GO0Wdzzu2o4
0uYTJTNpFD8rrZcr3BQLBOTpxHt4
V8CgWekTt05
WTayrXI4vcSQiQ6Zy6HUfS405DKKfiCRxVaMxXTu0xYLuorfIJJEU0JVkoKkJGoToYhyBcsEDJzwZkOTP35
NmN9pnhSN85
TeKkiDJQtOcSQKoJkrTziv7ulm0g18FfDOwPELEii4zsSluoVivXpjQET53IwyEDMHrszgnXycbT7n1zUe5
FdhNNRkXw8taogfzeiUlFEpdcJf5
1lQmXvurs7tSchExZuiATo5FCF76
8Uwv68bTNA6
qIwHTh1gvwUPdZDwSzVOPZv4x9MrtoOwlhlV4WQYuajQA6
teAJdRVe4F6
XUMxdSgQBp8W3i8YxDdNwm2hYvDvHS0t69vwxKfKRjv7Sy2OlF6
XzEgVu6YFZ6
lAjmWxVVw1JICv8Z0Or4rItXcOqn77y0LjJ6QAB2XwaLu6
Fvyf4oQrpolfOBJHWXeDGXoeTM6RNkEuZEkJkueZyXJo2di2qkQKDilzQWx9yYJVyTLA9zWdlTemK7
L49GmfL1SW7
ghCpxtgywZuAG8QA64njpRUfKc78
get_UTF8
PWKUo9OdIhHNfLzdpM0GSp9W1QF0iDXsHfK57sO1D4b6om3gF6mVMHvmoUReQcEANqZ8
_Lambda$__8
I1Kzl0XR6b8
o7cWpOh2p2O39WjtskqCOvjpYX2Zigm8mnIOtwz2HmwJna6OX0IAFVl4PEMpE7qjrZb8
Uz8sXrqBK8UXXR1WBBArC1C0Oer8
YCIPnzITnHZYzyWRO3idAErdw0gvG9WLSQn0rEXxwNbEkenerlNIT2FktyQzx5rOSpjarPgPjRf2x8
AmbumTVaNRcx715k0qwfnximtfkyex7QWWBV4ndtvumIF9
FJwL7u4azjVI72fhKGvWkXX5PJEcKembTtRBul6Rd0QK4mf7PiccYyML1vdi9MZBbJT9
2yPOg6K6LZ9
aVwLy4fTl1sLNZJlwSaojNqyRxZ9
96ZKpC1fm2MWWAzY8bGx4BWJ20l9
LeqpZjFcErJOVRtiricON2yPpQz9
<Module>
Z0sghRm3wIACRnShHCKhK6eziK7MhOTQ4i7sEoN9HzNSX1LMz0PEetp6uL1rfwRAsNgPDBknmFe5HwhqV4A
gUr9uRKNIdtdUy2IlDHASdeDydvHZwp6Qtyq2gO23Cg4Xf4LISZT0xEdTES27DPt3NDA
6IRyaB6V3BhpQhTPidDki00P0tDA
5cZkreqdP0UTrerUEFA
HWVGgAEEnfTouMyxOdRvIINQO5wmugA8LUDcDR4N9lrPIA
8AkGjlF3SA6kVCLpUEvz1ObWpiyUChkkZVjBWQn0xSeEQA
e8m0FtrTg3srbZ8UpLDKsYHTufYvLZXeE8fnwtqV9cAJAzt4ySA
XsnQrGy6yPGiQZ6ohDd2GNcLew1738J1x0m2YXLc5ogZ5YvWjZfK4qbdwGlbA
qfUUN4LzxG1zCZxLHiA
capGetDriverDescriptionA
tjW1Mac8Uenl0EmUhob4gs0s0UzixogOyFjIu1trxFnH98GBPGHLVgNfqrduRi573mqA
7LQOQGFQcttGrlgw9IFcgE7Up6vw1V37PwvSKIXRTr3a26z1acTcSVAeSnmd6Wn8SLtA
capCreateCaptureWindowA
PJLqLpHaBgrcYlidlMcIGG99nRJ6IWEXPIy6oY37jcIn8NHcB13iNoIdJBLwJ5b3LrnbL6mVQh1r1B
NfnUM5jiCPYsaul4dvUMPAdvMYuhLCcgcH1HyLw6nhjVjpsTRkn878HSGWw3B
xA6arP6AoDTqiAKrNde1XIjKu5kNzs9JkWbm1SpdLF1d5B
cz5fz8qnb2ihJ9xWjGZr2WbGBotkt7FHB
4Kr5nGZGK9pgKD53PRTGkrBpQWpepAGqQQql5Lkuj65Sb5OebIB
SuMyz3NIBHZOObFf7nRhox0eHP42Eyp8JAfT0y6PL33qqH0egPHfDBqgk3BSXqeGt78TQT7APtgEwc53xNB
zkPqelA0Plc2etmtfO8yUmAuYJyB0K6PVvGASw7JmPffcz57zXcWzFtPitQkLhObE8aB
YxSoTS790KfGstzqvB6XZYQcHvRTzdtgnvMj1TVvB2UOTZNMShB
RbN0INY4unyJqT7WXVGE9c4bmQCC
YZGO2UKYSFC
VZp6qfBydLC
O5Kw7QXo4eC
ffA46M91xf1uxlRSbHwtB9YxKNTDoHoiC
RVoJkSAI6zNtnn8945HQHR9dSKQ3fPLPXHZbcjX6pfwejC
ES_SYSTEM_REQUIRED
ES_DISPLAY_REQUIRED
zb1ynYvUspy7rlNEPwGVYh3aAipZhoGZ47OrXlEoYA1LQ5FWsZi5SqitNo3yhJijcfUD
fBbfrt38ixZgqIsvHVD
ZEhRWLOepVD
YNzWC9dloQ2keFOaB1hhsNrXK5ObegnBjJCJsl2lJ8ngPlc5GgD
amd2uWQWZsSBF0BqrER7stzcYNZCRFtZqQF4XELi9bOhR34QLS2RTGIszhJ3NFJX9HuxfwYgDaV8kD
S7uOezkF8N05uBlILZBhxFCtVHkD
2c8ZYPVKe1OocK0XuvctFuSuIeT2Ui8e4pl4sxdZIRl8xyOrO9kLMrlOLhuXjHnH2L3MjkTElpSFwD
HevHInfLrO9GOfyOFRgEoZffIiyMqiE8TkzJMLEMD5NKHFEeSA7pWBXdcHjMTBWudzr01PeBde4axD
EmaSmrFHmdrtXQeOx3E
uYN0SNFXx86rBpjSjZAT8CZRc9AE
M4y3sKJoXe0u0GF150Qm0yP1Vbh7X4ewttZLHDJbB2TTEE
vPPY7Ylotk0pFdQSUq7ky1igZjUdjwhtj0Ab9qQLUCg6DXqMjGDti6AykQhhroNLv8JyIosEDJwjKE
WZj7woVIO1yzCr3JjqMA8FDvqGbSGdv4x3Gj8wDta5bcAlf7NOE
IYBEvlvUEuW4vca5gHvSE
EXECUTION_STATE
0AOvu8KoShmU3frtSdVonFWRTtbAaccWZ5bqgILlLybuWE
PSG3YkjIMYE
xGpM8hUPwCPY4z6lYA5mLKxvrotQ8dj7Os4BXKvNT6jQn9knIfE
x3dfVzgLXhpjk5WO14ELojcoXy7F
Gz6gzjgY7dKBBQ45dCAN4hYTz6Nb0MXXJXtYk4kE13pQXW26zOF
4fre8AEiXRF
eLFffZfpD0Sj3q5UAJGgkem4785TfzoHLjUMlBdmRpGJj2FC7VKpG4G3J153frvkZB6Osh4RMuABZF
nLI2CL8zHcF
nMa8mrcxEJtr5DcdmBZu5rTIuB0KqZGgBOmAkYN8WjZcintmt6RYk4IW7azItdqEXWmcbb9Jiz3LfF
ARX80vkh9V9y5YEwpMfGprVuKclDEsCPnicp9noDdSMPqF
hpoUuuTVw4RRADy8sj5yF
DdyDsKuuF35MnrA4A9X2yR9yGHBBrufkK6lIOgcVwSpYFjM0n1G
FE5dzxV83unMOyWTyj7yJeeuAXN5zhmMtmYpNhIoX6RpDG
7zG0TzKPcRG
dN3C6fAQSQ9p9HvhuTETG
osKyccAoSz2uG2lWWtuZAe8zmvVG
ABGJfCmMYrG
ZZyh2XDSHphOJyDbwM17VxXIY7sG
hn2KqluzRzShUxBtb1TwijF6o3Gu3BuWpbJgq56AbU7mCcZktc2vcaTrn5POwY21FD0H
Lwvfy1WL03H
9xdWcPhn2zcctO8GK0qDHKAdwVjvnyeVjMzXzfFpEarAqRoFFVvqAdwzJLML6E03CfiPYAOv76ToNlK3D8H
r6L4X63CvAH
KgpW4OtTKa11Wba35GH
ev1q8aVCaYCA4SIgUGeTysvLqGidpyNthXmbA2eORIVBW8E6Yqbth7hHFpnMhwi09O27OHmqRlxrLH
W817H16LydyfQQKtF0milkd2gsvY8GAaMuiSaLUjvr6VRH
cmsaUPwfRZH
qmiFId4hPaDZAA8HViPB9X3aTAblipdo75ny8X5knQzYZH
zqx09kVqNznBU9rkj3I41KRgtEaH
Y61c4nOSyJrONjgqYGXGiz53vIGCjibSsnOQU6KYH9gbPSCKvSGJYBQqXyDALFlIFZcs2GEKL0LlERm2QjH
uCNQscoCa3gHaDtOzUyB9VAUhEZiCYjLtOAobbtgO0FmPnPNO2I
l2DJSz1PsqY9SLGyOiV51kQrmeDl2SMV774817BdeQilFI
get_ASCII
HAdcfJg3do6yKs1nsy3xGXPJ8QlI
OFlWTR8bipI
ZMuR7yq9sO3oJYbv5nZ9J
AwHKjNs2NPYqjXAFgGS6ph20xr9J
8HPjyQSrpwdIocY8YT7DAW18y02Ql029821zcPz0pVHSzx7kymQmHPj5lyxlx0lWNU9x2KvimufekM6jKBJ
HYv3ywQyMIJEke0ZhtQMJ
C4JbgmHmCqFoWM4kfSe63DDMOGSxrouBdQqTt0aTYzmURJ
IGbA6mNwVZJ
rWLRFE3WXPHkwKldtBEDvSC5BZ2K
Am1A1yLTY8K
PGn1N5YufBkE11iSQaSdzYpEm8U8AwPW6zATJKpRUMBy1FG9DlwS5lPiTv6eEa53XSBK
tlaXgMFVoMK
nuM6Dt4JWeK
WSGIy3opkdwxgqNWhA4dVtPZavA2wr31I2PCTcgmGMumSTgoH39KhkSFGOHZROLujOm835C8OUeZfK
HQtGTwTCW9nyRD9r9SfuK
1TGvhk8EqfVZ8f54ZwK
VMrSZIhyrvy2yqSmYVBcVab03IzK
keZWnuOe06xTCxhC0rqCvtwgHYJlLrCA8ohsxtBm79lcxxrWkxbxHmWu5rKzK
6dKwdvQknIL
ucR5kBadfveU717hSKX1n6EVQTlXiX3OUqkZhZtyNyNpnOa9PH1NVjbaYoykf0HGxAWL
qHGoEkuOoa6hptbRBZiV7eQdCpD5cyighUKyeNwad8CSjDUW2eYoubL0IISvimm0Botg2k9jFfejPqBCjmL
N7zsu3sB3qL
IhSKyqCygwL
pg6MroYddN7L2TbsOLMD6uqy8xtg1ZDDXsxIhg0zeSXEiEGVbVdH1ziTOnV4M
88gw48a6ECjDLDCGYzQt6sgzU0jRHAQkkAa139RJehhDheGduOXbTGfIit9vS3zS5J9M
bA1TPU6ux0UmthkxViTKgye6QYN6rQEJ2dd7MoSsHbNsyGb3tmkHkuCsN9PSno4BdCVBJHiTHICTyeHh3AM
YJlMOvL9NDM
1oQ6tALlbUM
fmysk4cbevGqXdn6rPIzzXuEvuulEF56HUcTbKDZHGzWWgdtwXWSTPG88FK8KZn5DHekT6fQgkNXbM
W3kdmFZbmHQQRIX0v2Gs9J4aWaGnyQnjUiWwL9q7h6ALrfaEceM
KNrAryXqSEqaGbHUtYfeM
0XfEVUyjaJ2PlRaQnoMU58Zlz41N
xuoqDbolyxOjF5YzJ4FuNOIWD3OwVQB6SOOn3D6psvRpCW9YNduueev5qDBhqTFp9j3N
UH3SfEKIF5dCbPYK9yOcRyOFPBOsPzAZXiBFGB91gWocv9j1M3R9z0NevGj8N
RnvfGDX31dlPMZ1r5kbXbS4RtSLT7KmMWndXa9Y4AKBODl6kJMGHf3cNO3NS8NULH9XrmHZgCSz1lYNJlEN
aqviK8XKqfaIGU5PFj8lKakKIxGmLyfXV62zs7nIvLNZ9HrGDaABCAjMW64VrNGZvnozxcZwyOAFaN
T09GkZdpUhN
zLIh0CwIVI3pbWMq28FYqa3v3XNbZp0922XKrKZkdAuew6grCvgdVnz6fxiP5a0XQxIKXcTza8oCI0gy1jN
7bNqQsAeiTZOzuGn1aqBPVQdwYm1FqnF2fWwoxdFWKFplIsopkN
bickIADYLoTOa0FcRpXNeEZqWDxN
OOyrJbmeVZTPvducwrf5gaMbCIdHbQQlLZZobk0J3LCPLHdtCYKfeFhsJzTeUDug4MjmYvcSTNJ4XULOgMMq6O
3GsgG9b1VAqJySFNT7szufqICyCO
st5RyiU7tEloiX9GxCPk9M0lgBsUIt5DVlefAYbZy2e3X4zLfDO
LASTINPUTINFO
System.IO
Uwq1JwRkMESwsgQvLmCACZrR44pPlPpm3hREaWaP9kE9WO
QsramP9TRgO
EqkjyahzDm5oPaJvvNjpc5a3JB85JoCfQSKxRUVr0zwKVaN4k5XQ1yNHtYcprzvununO
fzrVONhsRThUbzfLmOVagwEIgkyO
ClSEwmV8FA0s3UJ5FdrvEFy81YfiHqLTgRC87tgTFSGG9W9hs2Jeb3g8imxGP
vuO3OZSjKMPwkQp4za0errPT2diP
uJ76zLoHSICz0Jjv5yRhvgwAQMoczEWqe7GrnscwVJXRTHwug3W7v8ZS7tqOUMpGztCQ
5mLBFWjNT9HbX0N2KIQ
NZca8A9B9QQ
DSAZNJBiTTuS08s2HxXAkaPSN6iQ
Uk9Zaw3Qibj4MCxC2A5NqdgpiKQFhdPkrRFaXppBCus6dhXLfN54wFXUejw4Co5w5f7BtGo3F2yykQ
j45bouQgWnQ
pkuBG8E6NLjCQsfnZYHYJHIreKeSR285biIr9xBQ1JuLCAsKz3cTrL3rtlroQ
Ef5kSeao6wQ
SAOKc7b8i72w5odiCER
bSmIdLnGSxsZRwXxXyPgA1DGLCyCBs7aVERymkGEi1BSER
gSYTyHVMXwLitc1IeY1KR
46a0uXxwhKVVKxayzPLJQHIFbdltMAZAKu9SzQpLKHRwKP0fKWR
uh9di8H8DYR
9LZAWKAixFUL7ThFSKtqTgZxMggR
AKW8Un5uqhJTsdga7GncI28e5c2gLVcTmf3ujKN3dNwT3XuNv8QO3MTaNILW8ruKaC1ijraLbehimR
mmbJCrSLYmgYD4s7HufqS66DbZz4qzftuTMzkUuN9tWJ1LAXC1S
qVRCkcZZT1S
vQD7IOfGa04wZDfDzPaDhSrkmXnFaStLQoxJsk1zKqFnCS
ES_CONTINUOUS
LTuBT2aDIcS
AvvFhp8pCgS
79bGr68Krtd9k93I2NdBEmmCPu2ZlsuxCAiyCYCZiPsDi77QJnD39tpukTKNwIawvTxSYGukkHQXqazzzuS
yfIhbClnulLPqoJ8yMV0K0WkbaCpdFzYEhxM4PVZLY15vwxC8sxWOgVuzRQ1T
64TTosfCm2KUvMe3zitSdKRq1dCc1HsIM9JD3JziGA0h5T
FHRELXEEGpSN8Nl01y8RUF9NRwWT
IJ93UwWcs3niwcbx3wjQd8ea7LP57enfHT11csUvRBYOrWAIUfJdTYWDGeOOQBQARFYT
zKFv3GaPSYT
ZOsc9MQukvL8umrNax78WQtikXYT
kTuKHuGzZ6IFaR6vevrkjpEQ0zJObBU3ci9zqZqFjgpykGZDcff2r3YTdlFJmLczOjcIxy8XCATxMiJ0itT
KwZQrifI96gIp1BJTvT
1zFftgWuuldgxIEiBGE1dtbDbjb94zztHnDCQkGvYWNRbtqc3xnQhG4NF2zJzvgB3TuCMbNXI28JHYHOY6U
AS192erHI4VhcamEVAZhlGokJPmFwkJ3ykd31Y1HZtQuntGMEbdp7zuJ1FcaLZXhvmMsPaBa2L0CIU
MdCd3tpkNFesi72HuAaua5X0dBLU
DmQO5tz52dcdWOm2chvAc6LcbMwZMuXPClMGFnSGxzmbrEfNX6b8fwsMr0nLU
7sJthbHRY56ktN1Kdliz6SdUL6kTFW6YvTcbNN6v0pHtM6fvyAt2XMQK3KsXU
aalwpqhsdgpOv7rfp90DE4wJDcYU
YBhxk2ZbIG495n8S4UbVh9CPMQSRp5eErIKlJvGZZ5xxAtGWFayjBU1Ir5xvcYjbV6cXzSqSOvsYJxEFqYU
uJ922sw7BahhnlulnzTDwMnebsoKWr63L1R6OAvtXvNZvU
oFadDKT8qim8CZuj5fUeZCkabr5KBtPO2ScW4vekn07z2V
l2uID8ijONenXBfFqYOLOQtMD2aq6cc7vb1Q2Lh8Lx3O39SaDBV
DdeciKJjJCgxZkzeMmUs0i7meBh8jCDWU2hR6LnnlS4dBV
hHnDTkUEBBTd7cRY5zujMIl4NfVui5Eo86ucRwBmHfU7TAJQdjomzsrMpI1OV
qxdna8iNSaDovYb8WMM1E2YM0tyj2kCQe8RL76kf0daJZ5ebNTV
aYJIXHvs4eQed1VB0Fx6ZqtY3oXAqvZojTAIxA2oUektP7TlfeV
NQjSt1aD2TKYZ8ojNwOfmztdXr2W
c72PLm1HLhFvQAHymYDLW
eyEinyLsOP5gRlvFGbRSD1hHUEUP7DtuN0hvqILbrawUBpJwTurpHdZGbC6XgEbeCSWwnZfXlfiBhmdn5eW
ML3bn0V7TotrOgmNMu3Hz513VIThlIJbSArjQTM14UkZOZYa6UcIz0ZAmjG82TmUiMr1tIgxPQDjC1ksXmW
5AwblTzQpo8rHkNlxV8SuBCEhMKyCFR6Jy2UGoP13VJWxW
K5Q77KSPh4KVrpTqzNfFl4t9F4pLitQjWqSk6ohV1Ebu7X
XqKMiFUz28J0EOvap1IRSDnNHG3CQGweGJfLVkz2KDR1agZW5VKCMgLMGfUXAZpzB699LYjWznt1rT62ALX
BkwQLCkS7peM9STu3B2ELkrvppOX
52iyf4cZbxeghe1xqFpnpkk6adpX
AoAAbT4tDOXjREi8So9YK9qx3nSxl0SXp5YT3fTXcms3tJYy62ALacqGQqhKCgRozCqX
GH3Sp3IybmcJGcbYSyX
RxcAtlxIxf7TMivVuCBflqFMWC1Y
AxbgM7Vh1lRGibvlCRd83r1fIjjVdc86RaWlYpHsHVFXUfZPlTEfQBpHAQWAPs1mIoHfis6V8hMdGY
xVA8R7tTsFu1xqyx6388lA6QnNIY
0Nc3raB6zPY
edzfczB7J1YrVTVq9TY
A7Qxp8yR2WTBjQ8cJpGdY
lAWWeDQIY0VaW4cHmnY
5VaOQPvY5ySqjaMjb19Ol6N91lsWf00ZQP1bxvCxjSPawY
vAVUa9Ax0pl5xrAE0U08e5gxCGFcuIY9eXfphZdAXoWSprARa3Z
zuxhKaCdDSwrB92G1IYMZ
4PtD5ly6pEVzO7zGhtFmIMnW3GXDfeCLNDNbfUgWwsifbtU9uJ9hGhoaJDB3d2OfIMSZ
R1qBfAckS0t6v9kNZpCkFFrfZjzRCQ83v20mBkkYNegM13BVrx3okgAPXs5s2kWjxRyYK1KsZEEgFMEzEfZ
ULlJqAMgsHRv28rM8cJkZ
h7EXkmdi8fjG7IGisaYFhYtOCGck274bZCtx6MfzkgDNTt0IVpb5jlDQpc6xMHtSi5quDgSPtRdybPUzvyZdlZ
AbFBOKJNjv5uKttCDnZ
ptLOzIXXiqZ
oQ7B8CH1X2S2ubb2pIo9JJqeGztZ
Dispose__Instance__
Create__Instance__
value__
fkC4UTWHfW5kjHllfEdwkkxfNsWruj2MiPQTBya9OKnuBf15X5maadjlifMDa
Aei6qk99unzi70qK9vkESBRfYEg2frbuRaoljCj9TL9jOcrZTpZuSpV3CaMZqZZCKVyNihLlONkZotuVoJa
dCF8N0iPGTGcSUM8VlrrZIH26VXwisgvUKYT8LxOmOZU0jfPVThS9chryvWNa
xFW1WjpCAyIIw9FngYvLHkXUC6qDgbR55NSTz8rJpqFEyxHvT53i4LLifJ9Ua
LA4JSAvLEhwQuuNP6dBqLj8FNdPk3SVAyy6m3BxQ67nvUa
wXA2wtpCPGSI7gTyjZa
7NoDqSFiGaa
lwFIGxAnEirblEinVFOD0spX9j8f8cFLHB0GxQaBM0FecPZQpPnfrlzP9NZV9LMc3OY5GslugtQ5ubRwcea
ProjectData
1YTmgPFPJrDn041nbNL3IyUl36aQnIiHN9dX3ogxq8ioRGZMEfcLSD60qpUdlC1Qtcva
CcEeyizQUnjsLejeTko1b
ajtKSdg9OwdUn141aK8uUbnAo3wM2URcZHhnvTBVh7pz5b
xaMeyxImzXTzrBQdEJMFPnNVOB3UcEBe1OCdvSxohTGGGEJULual2UVpxOxMFTv1HHEb
Z0rsq20I4Ib
RiTfeUmDhloVtrPf4yfuUpau4nIEgE0QMXeu4VWLoK5KXinU8Kb
bqmV6IZGPKdxKLQuQ75aSbeJcxkAYo1SYbsTEFC0aCliq2GJtJfJqgOrZ9yc0jFNDSgZZnen1CUYPb
LHoUsU9qDMOiv22HXoRJ5iOeV2to9zpL6dJmAKOK4yIzAoXMs9hh7ti6ZfQY5EgnH0JcEklTwpSEE8SKqsreWb
Z6wYrhReYjKLQclzLx7BbJeRFMhbROKoXjssClIGgShmOcBwOln80dtXf3K1vJ7shmcb
mscorlib
2aI4vXRYTCTWupBMv2IDhlMoVsvrsDu5pEeLJLWsc6uEYpFU6aK6o5kqAakwb
MJvrhF4s0wiN28I5b4JHRH7p3rSEJVxxqL4zCfFuhsiGxb
MSGMP7LLZi8aJGMvwD7fdbzAcrJF72Pa0aoOWPZqsTHucyrClBLrUyNJqxXvAkLD8x8w2YtbsUZYOWa6lHc
4IY9c0TMwCS0XRdgweAYKetgD2Ic
X2nbvpjG69AEEb6BCKc
HxDBdas7xv3fB0wZYv63E14lxb3Soslb8ljQTYt5CRJNl2kGv7iaVRx88k8pUsueKQOc
System.Collections.Generic
Microsoft.VisualBasic
uuZWJ0QnVnc
LowLevelKeyboardProc
29hcq7aXdjseIpDA4PqYvxJETqxc
MPDfZv6ZV1d
FWu1cayjmRIVKKFihdyFlGav3EtM1SuWuZVEqWHleW44YzIb8H1qlucSSbW7d
0PLs80RYpCfIdnu8Vs9HOeoRKQ8d
qUby6yWhJj4nZkB1y2tbpQb5Wm2q2OAkKS0agssnTo5uUeNX83fEBVYIUsMPwfgIeE9d
GetWindowThreadProcessId
GetProcessById
Thread
uyHNqeLL12fTZ7ohzmj5txHr9zbd
yGnVWNQS3KwOaIs6WcBDRGVYJsa0ktmSFsz8RQ8PmL0nmFRDR4VCTHFjdDzqZtDAvsGoY6LspZ4l4JLRccd
RijndaelManaged
get_Elapsed
5FE8U0Y8hSqVZItHtQqSOcgTmv5l6disx6b0mszm8LdmnB9cyfzsUftkgnCZcJCZiYtzpX4XvvGdfd
EndSend
BeginSend
Append
RegistryValueKind
UBound
set_Method
CompareMethod
TargetMethod
bxZcL29Rh6HLpfRXVPLMYssIAMqJK0ADr8z526KQwZetKApTTG33mm9DB6d2dzN4LbSV76tiUwTxje3lDpd
xhx1a60CHe7z2dtMOYCMUeo7XYDwDYpvc384YJ2NLZD7ODiz40JixpyieHba5PQXUg7qe6ZT6W4IcnMXWyd
NHv1RHVxvX3VsY3PmBe
HuwAdnQVD3k82rzu6YlYrRZR7Q5tBysv5oiDDbOk8aV9onekz41FRduV2FVIZazlKpt6V1nNceCEqvxItosSCe
uRrqIJxL9uoUlqyb1A91MIK84KOe
DFu2tWs2HD5xTtreSLID8fk8kUOe
x33si2iudp9TtqB2xhLwDKmg5TzvcSKcPIyCS3XV8s2ohP0AXae
Replace
IsNullOrWhiteSpace
CreateInstance
get_GetInstance
instance
GetHashCode
set_Mode
FileMode
EnterDebugMode
CompressionMode
CipherMode
SelectMode
FromImage
DrawImage
get_Message
EndInvoke
BeginInvoke
Enumerable
IDisposable
GetModuleHandle
RuntimeTypeHandle
GetTypeFromHandle
EventWaitHandle
Rectangle
DownloadFile
IsInRole
WindowsBuiltInRole
get_MainWindowTitle
get_MainModule
ProcessModule
AppWinStyle
set_WindowStyle
ProcessWindowStyle
get_Name
get_FileName
set_FileName
GetTempFileName
GetFileName
get_MachineName
get_OSFullName
get_UserName
get_ProcessName
DateTime
get_LastWriteTime
dwTime
WaitOne
WriteLine
get_NewLine
Combine
ChangeType
CheckForSyncLockOnValueType
get_DriveType
SecurityProtocolType
GetType
SocketType
System.Core
MethodBase
ApplicationBase
HttpWebResponse
GetResponse
Dispose
Create
MulticastDelegate
DelegateAsyncState
GetKeyboardState
EditorBrowsableState
SetThreadExecutionState
GetKeyState
Delete
ThreadStaticAttribute
STAThreadAttribute
CompilerGeneratedAttribute
GuidAttribute
HelpKeywordAttribute
GeneratedCodeAttribute
EditorBrowsableAttribute
ComVisibleAttribute
AssemblyTitleAttribute
StandardModuleAttribute
HideModuleNameAttribute
DebuggerStepThroughAttribute
AssemblyTrademarkAttribute
DebuggerHiddenAttribute
AssemblyFileVersionAttribute
MyGroupCollectionAttribute
AssemblyDescriptionAttribute
CompilationRelaxationsAttribute
AssemblyProductAttribute
AssemblyCopyrightAttribute
DebuggerDisplayAttribute
AssemblyCompanyAttribute
RuntimeCompatibilityAttribute
set_UseShellExecute
WriteByte
m_ThreadStaticValue
DeleteValue
GetObjectValue
GetValue
SetValue
set_Expect100Continue
EndReceive
BeginReceive
new.exe
XCihNDwmQz3t79RhOG0KAbAFCYnVGeQiqDaLnY0IDzSYYtXuMZLAsujAVlt3fXOjM5PXVo3lukenoMPqWye
cbSize
get_TotalSize
set_SendBufferSize
set_ReceiveBufferSize
On68IfXqcNbrT2TvOXwKjvIXgaVsUtqNC2MTGzJE7xu5QzqRmCf
0LJaFCwI3Of
SizeOf
GQ8YAOMoNCkCAcPtmjpr6coMPXhhyNC1cPmfhGHepPSlPAnx9s1f2FlfyjsQHfhcb1Sf
wfA7Z5n0CZf
7xFI98Rmsaf
4mZraqQ9eevI5twNW9zmdhWblO4g
xSQPYKMOad32cN2zHKfNg
KSkRucu51Qg
XxpZrnHxsJCQcPQGxoJawunFJCNlxURuspKeROixtGIxRIRreUg
JKMxFOTrIuvOL3YhPzSjXsFZHUZkX9NcgAJAEyhXijmgmEPbAWg
fKsOd1OeQRygVfIlzyf4IR2UwA7NPB44xzPQ8YYbIU5TgAnsXXg
wWGnJH4INKIgfolD9tA5Zn3UOlag
3MyZEgARfIXfNgl4Kv2xBQ1Mi0dg
get_Jpeg
7It6XC5KCBK9ak32t1vQNaLaBgKjfCDWKO6nWvM1HW6rmwXeH8BEf9oHTBRjgggWDjhg
wdpTxBh8C78EBns4NP3WGCLMjg8syVIKqHdTI1IkQSPSPj55rs1aKWuuzfZll9ePgMig
b5XdiZ5yhriek7TLKJHyZsTofxqZaMuwvYffYPIuNss5aSVWhxg5YlgAzeCkg
6Zr40umPcgpS5eKDkHM28Te2vfng
System.Threading
add_SessionEnding
NewLateBinding
Encoding
System.Drawing.Imaging
FromBase64String
CompareString
ToString
GetString
Substring
System.Drawing
ToLong
set_ErrorDialog
t11jLTqhNxqI2dxw7sg
eX1GnygN8uZ6w2JXd4OXT2QYVEclrDKusAFx7EZIPh4w0h
mtyxJ4x4klmcbrUvH0zD0m6bumLh
U7wTrvQKRTdywlf0HQ7kRjYs3Pw4VPB0eu9CJ6Mus0oUFa43t8xIJdUJn3OMh
ddodwvF9IceXGOyyXl4RNxboGid1RyncFxgu48Up8LU5lcU8aQh
R3o2TzBp51I5kJtqnvO6pnQIX6KvGT2ycddAcLBf1n0AroBDUtO8I2Jr5I6AAsVND4HSqeuLWUGpRPJOA8SpQh
KxELU8PcUycYBl00Ao2zD6jZ9s3T64dGFIhsEB0uaMxzC2NDF3OmN2Au8HaguISSHiRh
EoEBiXQGAjc2GiCPnNI5o4hjfu4kTAeGM1XLS0s4WQjSVh
wIidhS207HbYKQqpaBa12OQ7PmJWkZTSU16Bfxed74wma82Zjbh
0xM2NZKEcqpEVE5lyFMZft6QajlqbBr7TrboDEvUWbwobh
Stopwatch
2c7nCuW1X79sApZULb1Q5FAOMOjt6TS67xSKle3N5qeCe7HplFlntmxo8wzgh
J72tQucIGhh
ComputeHash
get_ExecutablePath
GetTempPath
get_StartupPath
GetFolderPath
get_Width
get_Length
EndsWith
StartsWith
n6u77I5GYOM3RQfIrdftrkMZ7EX95cjBqD9OVD2JSSIjv7nQ3Chz9hx4pwZLv7tAJpwh
zKBisxqU3mfF6OY6vYfGeB3qs8PZYEUnhPDgTjF4qe1WtpOv8pI2NOh4CX8xh
VoKbTpxxUlMsD95bfxh
llY5gIYwwr07aZfOfymndZJsDV5emsm25b0gBAvtR3VZ1i
CTwzhxKpFpgYpPN0rPQu7edakeWsCpWDOdoW3Gw3fRoe5i
ecsiU7iDgADhleBhtc6foTWiTLAi
qL2v6CXYpIfyP6pVyscN4tqqK9P3A3MqvqT2MTnWGSpunx8MXoJHesgC5H0NGaZjs1Fi
w4dWfKwl28gWjXt1nyoCv9MC0OXtdqdFi
U9cDl0URieaPTzP81fAOtFXzhIGi
IZXdexCgxrgtfPaP98qqhNTpo8Li
yCTy0khuIsrey0ivbERTi
ymm3R1OhqC0Q7n2LEmVf4b5nscckza3B2YJuY4miNUyRLb27ZsbP1WCQWEnEckfPM9Xi
ySIBuveNXmXEtVX1505Z94n9tmlC6m7mGFWdtUwG3XHuYWEtZRPDVVC5rrBki
WTuvmt56owi
P9uqWd9Tre95H7ude7GNO8VkfW6j
fwq0J8eJlltGsINZlZHVj
Jc90FMCPhjwtb4VCDShYaCgeoxdIyoq5GXX2MurAeFmFlDMAyYmPd9oMY9VXj
Kr6uzvWtOaj
Hky4LuGIbTqM6pS6ewsY5XW1Ksej
IXCxb70RGsnIgdXfyRmbrQLpSHaQeLlBXykPgqE6HsrIzOMwDU26UEsguukhj
bR0WpLXPSvuCsdrWVZiA0ZyYU0HnkO3W7yk5c4mWEc4dc9D5rtj
b6gppc4kYOoO59LoNwj
fiU7D0xPrwj
ZHS0H2Bqq0k
ohc239siZY9VXZZpDT9x0WmLybG94KV1Cn9GPFzFRP0BQ8R3d0eioRExHXPofNkOG6Ik
0kvetwNdorovq2bXbBBJHAPp916WRoYTjxRK8tqnqGe6XOkGyBHhcQHcvKmqnzwUjgIk
NSjAUdG7hKWFnk1g0HvWxfG1q4Sk
l60r98exijrhLp81HsSbsGORSIA6FFyq5z9XKK4B62sinFWUj1ZBRunCWLaqGSB1HdTk
MJBdkGDKyK0LXoanqfjKCPTvNNeu7toRttLfkcIlUKJIdHhfDPwdpWDOTfkRhWcLiccT492vKUkAsWp0qVk
get_ServicePack
AsyncCallback
DelegateCallback
TimerCallback
WaitCallback
RegistryKeyPermissionCheck
TransformFinalBlock
xVM1tr9RSEvrkiwkKWHXLlUfg9kk
fAs6iCCBvDiiL3Huxlk
821iUsZRQwOW1S5YOTCGlDTmpB96PpWjdopsIqXLRFrYVFD4noxlTvSTKClIVZm9fd17h0ulnhp34l
v31q0STp9DJgxne5oMdpBaJ9KoGl
BdUIatzwGi9ngU9SOBguwwSKQKRAJrnFLOxE1dRhzfdKga2LAobqkDpftnM0tV9jC0FnjD7Cw6CSaPN4oKl
aoPNoGSEBMoNrrfRhiftB6pLnUCNZTT9X47xAz64nReOQxf4ZuoKXnu98nwUUSyDExLl
rU4NbcVPsZJFxVFhZCGiOeXQ2DWQ931B3ll7QtQx1oyQal
RtlSetProcessIsCritical
Marshal
System.Security.Principal
WindowsPrincipal
ConditionalCompareObjectEqual
KSklHlJ0dyJaumF61gIbOmpF2H1lpxMLs2kbwOgM9Iir2QsaBTxJQTU5Uf99Ip26Bkdl
System.ComponentModel
5MEqBnBP1dbwoHU5TdgpM7xhRMiCn7N2X1IGQ1Iu2okndQTzJmEuRrHIEq9lW8LJ0DdPIGgX1OEqil
oUvWU5FOukl
LateCall
kernel32.dll
avicap32.dll
user32.dll
NTdll.dll
set_SecurityProtocol
ThreadPool
ObjectFlowControl
LEe2SwU9UV27gDtWTxQ1geU5Citl
ADplpiQP4Em
NLPvfjMl3MoVl2mj3uU9yeBXsrJaaUlS4aO6Gpm1XCZehMgHZnG3wK0mrJsZc2Jm4n2ryluJNCIwFm
FileStream
GZipStream
MemoryStream
lParam
wParam
get_Item
QueueUserWorkItem
get_Is64BitOperatingSystem
SymmetricAlgorithm
HashAlgorithm
Random
nLV1XF3MfTNIsv9vEABQmPvpTQZQlnfMzGDyDxLVUnRFqm
fCIYYqEHPqm
ICryptoTransform
DsDaDfFoFg30hY20SYkUYrb80EviApufCSwXCv1XPMj1BtjVR8Vc4A1zRhstm
ZwSQv1IOoqmNZGtgYAn
7rQTmpG9uj95ScRMBRNpINTE2P5z8cmNxrW1kDRim2qIhGJPpPdBtX0b7G6Yn
ToBoolean
op_GreaterThan
TimeSpan
CopyFromScreen
get_PrimaryScreen
eRMuHH0gRfn
gF2okxQKE3xp0WKRjkPhRB45mScwg3ZDkZxc7jKWEM8XxQf58gn
System.ComponentModel.Design
AppDomain
get_CurrentDomain
GetExtension
GetFileNameWithoutExtension
get_OSVersion
System.IO.Compression
Application
Information
CopyPixelOperation
Interaction
System.Reflection
ManagementObjectCollection
Exception
Environ
SocketShutdown
sv7eAH3d0OJZOP0CU81Rx1BfxSaRxh8jh7KrIFRRiT6keXJ6A0o
DteBaPqU0h1VGtLyehmrJV6KSW4o
uyUSGH1NftFvWWfczpX9MbL9OmOAyUPF705GLhlra8GUfQjf4sj77AI5Q9S6s8kGRqwFLPWowLk8Ko
ERSmH1lqrVo
mNwY83dsxyouO3fsnbjNSBZiHb8i1DMElz4XlzSAkDvyELl5t6J9u8Qujtyk4hiF3A2QJRNXAB9wI0VrmWo
MethodInfo
FileInfo
DriveInfo
FileSystemInfo
MemberInfo
ParameterInfo
ComputerInfo
ProcessStartInfo
GetLastInputInfo
DirectoryInfo
BU57j38Cqzo
qBQMXl9g9aFo77MhIRqCoYzRpN2ZXolFUK9M0jhh7vaeb8W5PlhZhjRdlfqRTkWJzDYp
1nAgqYEYPZp
qjAeuNO9REOhTJQWfZp
Bitmap
JacsG1D8mma2fMBCCWT0lW6bmpdp
HOXbxecIJ7n0JThMY4tQFcJnUMmWnYFLjJNhjkezJFyrjp
aG3ft9G9ezlabtTUTokkvXQcoV9QxJm3SU0iAB9xV9cDkmrFgU09TT0XAWluVkckiKrkp23qJVX7np
K0xJ8tZ5afaE1L5KnNiZVGz99CqjYfwcplPuHX9gI57NOcGWj6Px0iIFaEMohVj8xEzp
SDvWvszaJO9t0Pf0RsUFbayWq3lyttIVuemwdehnqBCgbxrbEmx9U4sh1Vmkzs6cgKG7ThBDS1EG8q
ZhP8OA30i3NYUMpJQyC7wVuqGPx2LGH1qsnfhcZNZ8E4Hy5CNb3JJALUr474V9kWEqiqvbsShmWk8q
QOiJCFqv0ziPXd8NX3ORiVpyPcv0j5KdSjKlSyFW5ZfrMNGYMMsGHl7QAnT7WC1RjYPYWB78tQaBZeSp4Fq
zgOQlJoLJMq
O7ft34RCbdYeEiT67ClyKTO3IwNq
PSUjMwzQSetL9VGn668VbXBz4z0s0EaDXSWmCUaZbXfQeXBM92K8G3BXvKOQq
7N5ug6ifTJOZJFGWul19H2rvP9Uq
939wR00cZzEmrSpQsDOFmctMXwwUIBVleWWmQ3qI5qcGJGmgi85xXl5fNfDmq
lhqvg93sNyJrCEOwFxpGZubep5M31IBrRu7mdLAjiMa5nq
System.Linq
rjUTu8iE2stSWCNyjR94D8Cnwe19nLxd2lRfwgmxT9OWqq
WnymtW4p50AkIqRHjbBoGSva6F1pcagclVmb1Q6M4uG9fGKXCH114FqDvA6dcIVq9t7nPkkprkKIFjDCZrq
cMeWsu60g2r
8MwqE7FkWpcL5enwjLb1Gm1iYNu8CW2etY17XU93626V8nKf0ynryU9YkM5e76MPKB760mHarKKVcSmmE9r
u0RAIptHp8fAUpRpDR5mhiBfh6b1N7pfnrlP3tDPEeVP5nRjDCr
cnfzsZ9rNOr
8mFqT44y3OjAZP56H30pznGHrxUr
MD5CryptoServiceProvider
StringBuilder
SpecialFolder
ServicePointManager
ToUInteger
ToInteger
ManagementObjectSearcher
SessionEndingEventHandler
System.CodeDom.Compiler
ToUpper
get_CurrentUser
StreamWriter
TextWriter
BitConverter
ServerComputer
ToLower
CreateProjectError
ClearProjectError
SetProjectError
ManagementObjectEnumerator
GetEnumerator
Activator
.cctor
Monitor
CreateDecryptor
CreateEncryptor
IntPtr
ApXjEoaajkCS2cqswiUpOaihbvvvyeL8JuFu2tw1Er6gtr
fg586fXijfzwsJKRYlqJFS5PWiWsnQViaZD31PMqxhrXvYaofvJCex9WUSdzr
kM8ThsJ23uUQ8HH9X8rhMBtIq8drKvynPyhpYhWZxgEAYPOqnvoQI0jClho2s
ARdOPp1FXnmMK3m7VvC0hiYlYwgpxvN7s
j1HmWiD7HBs
euH9MkOvksHapkjgVIlnII7zYhcPjwEx8GBVcngzJx9fLQj3VLs
OQfL7a1MQQnIhkrBDp5Fa3lWTDNroReJkY2jSojHwRB1FpFLCHUbMU2eW2fgKUesuFM5YuaYAwFqNs
fHTpr54Niz1lNIvq9yoIH9Z2VgTtzw5aXqSWloZdPVroaUxVEvnwkhFvO7Uk1Qc8amSkHGUzMKVH9YPnySs
Graphics
System.Diagnostics
FromSeconds
get_Bounds
GetMethods
Microsoft.VisualBasic.Devices
MyWebServices
Microsoft.VisualBasic.ApplicationServices
System.Runtime.InteropServices
Microsoft.VisualBasic.CompilerServices
System.Runtime.CompilerServices
Microsoft.VisualBasic.MyServices
GetDirectories
ExpandEnvironmentVariables
GetFiles
GetTypes
GetProcesses
FileAttributes
SetAttributes
ReadAllBytes
WriteAllBytes
GetBytes
GetDrives
SocketFlags
Strings
yccE8A2wcYvZI0XyHUiwFs6b2rgs
SessionEndingEventArgs
VgRENoDawlaZSLf2eLpwj7lMFus7byLeP98WLUlsfVVZVC3CukKxGI9cX1ksVViqF3hs
Equals
System.Windows.Forms
Contains
Conversions
get_Chars
RuntimeHelpers
GetParameters
Operators
GetCurrentProcess
System.Net.Sockets
set_Arguments
SystemEvents
Exists
ESmJB7CIE6katTmhSOIohXbCKvvYRs7OcmRvZdVBkBRftigDJaRONr0d14C2uBw5Icws
8xIbyDbIs3t
ZBX2Mh12rwozyUYcAC2NvOO236L8MClAaueXBeFuIzqM1x3aaKt
nisUbV0SUfhlfqjNz53yvZLpr318pBkTc7QfzZ9z0T2Sq0Xc1AtGpCaXVbZnA9UjssPt
Vxf4D5Q1IdGfz9Vf4N60KGciyNbphEfSczZ0A1wTt
UC5yjQRoyspwSY2RWsy3wsI3FFEYASWLB2T2qErPdN2nWt
Concat
ImageFormat
PixelFormat
AddObject
ManagementBaseObject
CreateObject
ConcatenateObject
SubtractObject
TargetObject
NotObject
Collect
Connect
set_AllowAutoRedirect
LateGet
System.Net
Socket
get_Height
op_Explicit
set_DefaultConnectionLimit
GraphicsUnit
WaitForExit
PX4hvv9wLlt
get_Default
IAsyncResult
DelegateAsyncResult
DialogResult
set_UserAgent
WebClient
System.Management
Environment
get_Current
GetCurrent
ManualResetEvent
get_EntryPoint
get_TickCount
get_ProcessorCount
GetPathRoot
jCdOa6hbI0LSWUz9ousFu4HiSAiY1eGmEQMCymFNY7iGIPbmDEc3fgItpCzHxyErfVrt
ParameterizedThreadStart
Restart
Convert
$VB$Local_Port
HttpWebRequest
$VB$Local_Host
set_Timeout
GetKeyboardLayout
MoveNext
System.Text
ReadAllText
GetWindowText
Cr4UP7CqnoZ8nxhwIEu
gzWJNYAjfq0dbIZ5vTv2P2icDxj4VaVaW991MGBOJ7a9Gj3Z6OpBj4PDVt7DPspxEogu
XO4I4cfpisQDBAIrRlYpqf2baugu
RSRRDCa6m9kVoGsGdUddHtr4cNqak9H6fVCv2h3Zp2WT7fT05LFgVQLFdBYIdoTLLfuPoq6MQJFjhu
3PC7CXG5R6tCdFI6ulL1YpuphWTcm2RFjvIcR9LvhKDycRyEpmu
m2XHiyH6oQv
APzNSneHQCVDJDk0kYF5uk1fA6sp4TYs498H78hsTUxzPqZd01aj6tZzVlYSv
qK8ln1y3cmv
XG9qftrg7QtYl8NKCMM8HiOwPawv
X1Th57bi8yeZxb5vl6OI2ZidrtZSpdklWVNQK1WSBHMODXf3Dzv
bnKvaTjyoo4UKXv2mJeKBtQyJe1GbpfFFWN6f6AFvMNrK7RjDn70rnk30zpw53usBs5wO00uxcHwqsEUKzv
xKkPCDogVQwx20Ruk9w
1H6TGHTqZdqM2Kx4MCw
sdSgbk0g95dQS8gIDSiw9dvSZPGw
OxuhhyIH8Wuk2IyzIrzafu8s9ZF1IHuvYrWqFhPX1JlFHRvGoYkYUk6Fivzehz1g9XKgfgZr0jk9Hw
F2ai5lvAWdECX7B4S823I45dBno4t9vMbhmdWFtOEschsmadmudFVYyMqyCMw
2Pn9dwryXnw
GetForegroundWindow
set_CreateNoWindow
msnf5smBKarmMSNCQ33qfRHNgmEdxXuyya3tT0dmpWhjLTRnJQa1Hc3uzfzgvv65N7xw
bGKD5aQVrCZwjgkmKD0bwO25JreU8RvVvraxOYotGCWR0XkMEOeljZsbKft1x
4P9wKj3qPnMQ2vowEoPReNWadOx5eYYuykuppujuaUUegRCpEBpNpnePJFABv6MQMd2x
QLu1q9yqiLUt2CmYy3x
oK0zjQxVCwbxW5FRu0dQqnbMrd6x
ToUnicodeEx
UnhookWindowsHookEx
SetWindowsHookEx
CallNextHookEx
LateSetComplex
MessageBox
71wjr5WNgeWTXC5xrKs8qhJokri6pHP4Q6ETygo2GWSKub3vWiaOzJ9Gcx8sgThUBBsx
80GQaxNtaVkbHKm6lnhiw2WvhmurJ9w9OZJbf82DOaYZq2PTHMJnRnVNyzR1y
c4ao7ygPl9rpX2tJXoyOiSPXCJFaoO1Ys2h475x5U4OOEy
8h97KhFsBPRhcYnqpwjNFX1oD3386Iq4QDxZJywQKmi9olN8ldQQMMpG9kJfvv7j1dafN9N0G17WMy
9AmFk8FJbSSxjCUKxupHxjPcvBOy
tFpsHDR7g4VnlIPmUUvjGgNWL5LmBdWOO6d9jgBsLUOKXy
I14Vr7s0b5P2JwzYnwzXTXJGDfkKEy0dLElL2tUGtR3xXbT62Yy
ToArray
get_IsReady
set_Key
CreateSubKey
OpenSubKey
MapVirtualKey
RegistryKey
System.Security.Cryptography
Assembly
AddressFamily
get_SystemDirectory
get_Registry
op_Equality
WindowsIdentity
IsNullOrEmpty
RegistryProxy
rkfaA80sYusqWN7BS91hd7qt5A2kGyGY8H3NgiYLi9682UwmEnrhlTZq3eAtlypnH2Cz
lPukdARWy8mG133yBr819yZPCCbH2M5nGgmnegsYszvwINDqg5OPR3SpnnX18zeABvuMFR9Oq0LsTB4cvJz
DOS4IfVnPBwVw19kwG2md7kdYhhk0HpyON7yxSyn6gtNMdjqUzXsrYXAeELOz
FkVRMc1XqOz
FLsaB9Ef47O2yg26ETtzjtsutSz9tgJyOKVJxgNLlxmI79xoeqDiA7XC11L3ExKCNIT2pMtF0GDiWz
GLbv94imkWz
kpPIc0dsui1aLI6m4EEBgizTEQ9GncJs7IGGSX02UpwKNRk4jkpwQ45qNTKmz
kkUaGfb1RMst3QSzdPTa5NEOjyvz
Angus Johnson
WrapNonExceptionThrows
$a94fbc73-2874-40e3-8069-7cd156ab8c86
ResourceHacker
(Resource viewer, decompiler & recompiler
5.1.8.360
(c) Angus Johnson 1999-2019
MyTemplate
14.0.0.0
My.Computer
My.Application
My.User
My.WebServices
4System.Web.Services.Protocols.SoapHttpClientProtocol
Create__Instance__
Dispose__Instance__
<generated method>
<generated method>
_CorExeMain
mscoree.dll
pIDATx
!gggfg
h4@QT6
!,wmX;
~oUo4!
SOTqu\)
GGG GGG
GGGPGGG
GGGPGGG
GGG GGG
GGGPGGG
GGGpGGG
GGGPGGG
GGG GGG
GGGpGGG
GGG GGG
GGG@GGG
GGG@GGG
GGGpGGG
GGGPGGG
GGG@GGG@GGG@GGG@GGGpGGG
GGGpGGG@GGG@GGG@GGG@
GGG GGG`GGG
GGG`GGG
GGG`GGG
GGG`GGG
GGG@GGG
GGG@GGG
GGG GGG
GGG`GGG
GGG`GGG
GGG`GGG`
GGG@GGG
GGG@GGG
GGG0GGG
GGG`GGG
GGG`GGG
GGG`GGG
GGG`GGG
GGG0GGG
GGG GGG
GGG0GGG
GGGPGGG
GGG@GGG
GGGPGGG
GGG@GGG@GGG@GGGPGGG
GGGPGGG@GGG@GGG@
GGG0GGG
GGG@GGG
GGGPGGG
GGGpGGG
GGGpGGG
GGGPGGG
GGG GGG
GGG`GGG
GGG0GGG
GGG@GGG
GGG`GGG
GGG`GGG
GGG`GGG
GGG0GGG
GGG GGG
GGG GGG
GGG GGG
GGGPGGG
GGG@GGG@GGG@GGG`GGG
GGG`GGG@GGG@GGG@
GGGPGGG
GGG GGG
GGG0GGG
GGG@GGG
GGG@GGG
GGG@GGG
GGGpGGG
GGGpGGG
GGG0GGG
GGG`GGG
GGG0GGG
GGG@GGG@GGG@GGG
GGG@GGG@GGG@
GGG`GGG
GGG`GGG
GGGpGGG
GGGPGGG
GGG GGG
GGG0GGG
GGG0GGG
GGG`GGG
GGG`GGG
GGG0GGG`GGG
GGG`GGG0
GGG GGG
GGG@GGG
GGG0GGG
GGGpGGG
GGG@GGG
GGG`GGG
GGG@GGG@GGGpGGG
GGGpGGG@GGG@
GGG GGG
GGGPGGG
GGG`GGG`
GGG0GGG
GGG0GGG
GGG0GGG
GGG`GGG
GGG GGG
GGG@GGG
<?xml version="1.0" encoding="UTF-8" standalone="yes"?>
<assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0">
<assemblyIdentity version="1.0.0.0" name="MyApplication.app"/>
<trustInfo xmlns="urn:schemas-microsoft-com:asm.v2">
<security>
<requestedPrivileges xmlns="urn:schemas-microsoft-com:asm.v3">
<requestedExecutionLevel level="asInvoker" uiAccess="false"/>
</requestedPrivileges>
</security>
</trustInfo>
</assembly>
khUocyrS5Fm
WMDmFrAMdQvHDpP1QRjQ9imWzEvYinYxCRqD4fGKSCIl0XV1nmPmSarxpC6VHZ2YxeKOxhb4LUaZL7yPI9B8tH
1jkTvIuDFMjlWSapqt3gf6XX8jEgujKvxZNBou8bDMIuj1QVBymSccdbXPipzGvGEP79XtAM1v20DcRzuyxgCW
pQstCeQHAqi82UJKUa6X9lA0mWpdEsRWuRGa5ukUYtNfzRPkNlSvk3XD1ssBXR7q3IpihX13ej4jt9ktHUntvk
qYiSzK2t3a100iXI2QHvI81KTAh1
GYOnlp4fAJAKVGd2paplQTNxf5gk
kV6CqBZHz8gMvLoaSnKTlmCLM2sk
dNUJCwgKLOo5V8G07VyHIku27QX1ubYvO4NPbsUXZgM=
fY2gn0BUP4XtHUgJLLIbXw==
lGgvjWZAM9pMTDmi9uu/NA==
kCUILc6M1MoVn4O3/WuclQ==
lHJ4EtDwugipXwdDKFvj6g==
%AppData%
tKlBrOKLfzxo3GPA
\Log.tmp
0WJv6fhMxSStcz55DECEAx6cyjyX
MHbKFziBYjpK8blicdsg3FgvIYsE
schtasks.exe
/create /f /RL HIGHEST /sc minute /mo 1 /tn "
" /tr "
/create /f /sc minute /mo 1 /tn "
SOFTWARE\Microsoft\Windows\CurrentVersion\Run
WScript.Shell
CreateShortcut
TargetPath
WorkingDirectory
powershell.exe
-ExecutionPolicy Bypass Add-MpPreference -ExclusionPath '
-ExecutionPolicy Bypass Add-MpPreference -ExclusionProcess '
Al2GOUQhZQJQDorN4jkh04encOZV
pkTrdFT1AAf3kzoAGPF4SeqpQmg6
lrFoQDb3aSNGp75Vuo3XKxE5sZpb
Pe7KIDG1yU6FrU83KyxhKaKTi8e1
NmDlJOkmwkKdMWbWVPsZ3kWX1p3t
IbStI2jOvfjzTEXNOmt0SFwF1rX6
Microsoft
Service Pack
XWorm V3.1
dd/MM/yyy
\root\SecurityCenter2
Select * from AntivirusProduct
displayName
37WaVT2cqemSM3ESaR0aSFXYJ3eb
RgDHThtCDIkJ2nLHgGATlc81de1i
n6jDazIv7CgnNouTZviL6TCkGzY8
e0k6GgvL3SBOzGw5luy9SrNwBDdM
WmwX89BJlHHSUeVyRePsix3vPjvH
mehyRmtsGXPE6njRDoDQvKFACPrL
3H9yEIXdCHR79dwF8qgGKMANzfCN
E87MpAHtrOqWkcZ9lvMR8mjc1qu2
kVohHOpcrdtS8ybKsXreetrVaErL
6RDMUJXpTaXfR8qWZKbndHJU7mlY
lLMVblR79CJ0wVXaghM5t6tU1rWu
gZ3nO8KeNta7KJAAxl5zgpSLdMk9
Lo5WdyBBHYbkr67RTfce33FHhSda
0SeomcXMqlcmY7tAflru7jwB0mk6
ijXHUwRmmHZOzNzeU4gbBcFNv0n9
DvoAPRL15Hhh9mobRvLoSgjZBtZl
uninstall
update
Urlopen
Urlhide
PCShutdown
shutdown.exe /f /s /t 0
PCRestart
shutdown.exe /f /r /t 0
PCLogoff
shutdown.exe -L
StartDDos
StopDDos
StartReport
StopReport
plugin
sendPlugin
savePlugin
OfflineGet
MessageBox
Plugin
Invoke
RunRecovery
Recovery
RunOptions
injRun
UACFunc
ngrok+
Plugin Error!
ToLower
Open [
-ExecutionPolicy Bypass -File "
IEuXxgR2iM1lZpvuIAQcTer8Kvkt
vzYev9gHBK7ubl4PiEqIJs5wmU6q
WpnHtjdUynjVz2sooqLyXjsjRGeU
EKHzRiVPIw1yNTNMIO2XvFntb0kU
2idGHQv1MGI4N1Kgt1GsbM9exE3h
mMi1F8F68yGT6m1qYuDtcKzyK3P9
5WY0rm3TOSEH2MReHAHaYR9SGZkQ
X14cySNaQQU9zFqQExSRuSElvbhQ
jn7YqXvg2YoBrV4Cro6kgihA0jYS
a91eUNXunWV9BRoVkZCCAAVLUYvc
0ILg1uKUf3IPi6cMvcpwPFixCd3UhshN1du5PdF0UWtuyD6Bmi0r1Yhr51AZ4
U7qT6bAgcPmpEnGOf1mFFn8sB2TdlUvrGlZLvfpwmmh5HfycEgNK7Y3Vk7A9m
hbKOyJzeCsRhhzUnzkUFErcG1n8oWvKyAAopGlDluZscdGB9oW7urCECdpkbW
GdRfLTa1BCC9t1xYAD06fEfEB1julKQyXJpIHOrFNJ9v1GqHIQ3KS2iqJJEiB
1yeOUu2xbXAZ1CvDuxuF9bgSNMaPcfAn0mlYpWtsIIbeQ1G6ybkE9iqifHE2V
GpsAcvFYTjlIGJZx5LZhVtIGcNuslXYjJgPobNsC6f6LXvDGBMJRTHsj76tmz
POST / HTTP/1.1
Host:
Connection: keep-alive
Content-Type: application/x-www-form-urlencoded
User-Agent:
Content-length: 5235
schtasks
/delete /f /tn "
attrib -h -s
*.* /s /d
@echo off
timeout 3 > NUL
" /f /q
qYrk2w4jSUxuQStQDllkPwsUoWpMwA7GYRMDiIqPw3COEvbhU2Mwq2kPG63Ky
ZzL54Ey9PGwuwjcc8f7uQOoLE5dU2WmdBfaEUvXQcAUPszviCZ7kikI9jkYL9
wscript.shell
Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced
ShowSuperHidden
windowstyle
cmd.exe
Arguments
/c start
&start
& exit
regread
HKEY_LOCAL_MACHINE\software\classes\
HKEY_LOCAL_MACHINE\software\classes\.
\defaulticon\
IconLocation
iconlocation
arguments
&start explorer
HKEY_LOCAL_MACHINE\software\classes\folder\defaulticon\
IUAW1ddcCVxb3qmTAUUJTvwlhQyc7Gd8JA3QMjWjHQqXtrLE2rTB1UFj478eH
YSGZAmzcKE4dhQ84SCieJ4lpjm7iMkCNFi6bu8N040WlM92LA5d8Pc9bF3zjI
yqjesQrBpWzWiN9L72RnZvzQQQy6mxfH9xRlDtUwQmyusOIM1eSSn5Dqfl6TS
cHk7UUvgjxlenwDk1ebvjmRRjQf0nbZSTcWQ4zAEBnQm0uPq4bObHbAohdEA8
ToUpper
[SPACE]
Return
[ENTER]
Escape
LControlKey
[CTRL]
RControlKey
RShiftKey
[Shift]
LShiftKey
[Back]
Capital
[CAPSLOCK: OFF]
[CAPSLOCK: ON]
MainWindowTitle
ProcessName
kIdy0457VedpYMj6Iq8RGFSaarhu0pXbwt458IqGwMhanzhiNy5jz1pZlKwUU
HWgahKnIcTfCqrMWAqhXNvCjmHxKvT2UxuMmmhY8VYeaqpBTW9RC731EModVB
4w99BpETOiNgEAFZqYzn77JTmsRhBvlLnUH4whSZ6WXsGQFjovcIoxaZT5wwn
AFUCZhgcPZx9dVNtiQ8Q9FM1HAEYbyRjzkJ6jRPIGnQjvHPiXJYmpLcI9WnEr
THPMb6tdWllktP7ioRJIM6c3umk1qTwYHajJkZ9sJjwBHSuOLue0TWFYHG6Ng
lfHuF5viVdc3ZvGfHGChRihvPm5Akokfsnxj4zT6KYVFFNejBS3zmPDqtS5QX
YnkMpR9BefOONeCr3dx4MefOYjfUBvBZcVGt3QNo1WGOucOBQOebC7byw8q8n
ld3qt6GWAy4iJt4RCGnBArZneLROPnkLle7MgZC2HivSGA
PHVm8CtwQmyF5HptiwbhPfGWpNcRCtk6VqzmRY6nMkhEfi
hkR30V3Jop7pXeQkZ67nwsT4xzDLNacJ7sY1DrO7nEQ4c8
aEyaKPFXWlpu1Yc8S5sTfWzm6UbyQHGxrPkl2zK9bVhHYW
FcEiTNJsoUM8xRZD6jn4nyjplOrariOIuCwCdlh2i1vQeG
Lto7Lf5Tc98N3lXaoYM4fvCvU24VTakJvoQRNEhq2e8f1J
j6cdQotMhYsmQ7M3fVfg1pfMVnwFV4mtn8TdEzqAIbJ9iS
QB4Hr3MvC0bMvWEcG3y64eLFKrV1g8ZoP3YOocP315QNnO
hRiXx0k9Y4gUyT0g6PkhxEZ3OsKW0GAWyHDVfkkxcmOuYx
LTm5wh7Xlr91TN5JV2Bhy2SXPtl3yd3G9jXZb25T1h4WxV
CvH5XiORh02pQ6Mf9yNHN07tffTxGFkSvl4J7NWRfwv7ss
DSdXjNMeC70t02LUClEzuoMqDFXMKz6ak5MtXXXhEfd6Zf
Io1ojvdKicPkXeedWfsoNu9vURHrRYf8S6jXS7mvE9EIoV
URqQxtYXTokrGzBCTFAS1eqZTOfzB6LuIkf8AEUy74T9b6
XBx2FJmpUdzLSFiwmsyPdXp7RX92f0UbR0seR5pNmjlH0o
Wqzb6ycse023k9JJtVGLCR2aE6gBfeq8PHx8evYsjWKwie
oJrdl9wd6GxVOl8DZIjtDhKcGYimo395uVL5191m6EdPlG
0CkChl48Ypy9PZqIE6o9ggHS3o6jTmr03OSH6oZAQZihjB
wLyln0WcdaAMaMNR6yf8s5lfHC4VLA2m5Gg1rlDWZ59xnH
e8VmxH1BRjNyeFTc4K3UL0PpOXIFIAkdcO0gKYfQPzOMN3
Software\
Mozilla/5.0 (Windows NT 6.1; Win64; x64; rv:66.0) Gecko/20100101 Firefox/66.0
Mozilla/5.0 (iPhone; CPU iPhone OS 11_4_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/11.0 Mobile/15E148 Safari/604.1
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36
abcdefghijklmnopqrstuvwxyz
Err HWID
ToArray
aEwzv2llOoBTdglhga5J29GiMOHM6bYWmuSoMcalFqO9Zy
yhHZ4eakufR5H34MIHr3gj4lcBNiDYHiwRSizKP4j76u8V
1nxRLCCBLiKQGvVwNj45Zh7bAqbLflAoJfZe74BWC5eA7ccCtnIBk1GIZ120z861d59aE0HhTZmhLa
8OCcs1gTx5YF0fZYmdGLPj8fUQazbEB7JcI6sOrlpWjPp3I2bkgDC7OyOGloBf5i6ocIuq8z3JsF6L
EbnqRdtXuM1c54gjIzScIosFe1Gsc9Bi6y83UlVLL2UYDFxav3mpfIuupn8HY1KY1kTGCMOaGp8Pd4
9vkN8GiaZU0n2cNLg7zhVPo0IVnYxvsTqm5kKFM0LQCKWLrpYiUber78s68yfkbTQ9QJekUk6aqSvf
7qNtKPf8g9noGnWmjbMzuDcfUO2BfwHfzBilHB9PMYJsN6lUgDR62t6KxP8wxxnUrbssgglJEk6esc
iUQw47PTAoPUr1J1qFzRmRsFKkcORcheciKUmqEE1CdNREQJU0z8uEwul0l9Tla72GNBEdeC3FeXLq
67jOdy7Wzcm1mAlycViGcJ8EXeP6S0TrXBS3VC9W9IxCvEBjxrWccYZa7ZrUSvRRTEGVm6jfCKLgoZ
DtUOhNrjuTWavZfVmNNjtJFwTB1tWMxOtV4TZWPZNZOHoUDA4u3LLVKTknmQBKC3aTUiCQn387J0av
nKwC0S61srJM3JPwveHeN7fmXOW8Z68ZYJhhbiEhzxMqAOWjneVGnbCxujEjRsBlIEh3r5Otf69a1u
UCxeAjIMrj7bAxTpBMnCr7EJfvLBsXKEVGKi9KVPeuAazIBGxesx6DDfbvAm6Fk3QbsBgdPI07aVle
kNdauW2juHDAyCdi6h4hyAzg6qOmTkjGPKnh5PafrBO0hfewnMdjz1fT7jIfCLmLazWuWrlo5zgG6e
3F1xAdb7aN1xTxkyG6p257HTkRE4LD4spNKEeM3NgWtpKRmv0h9OiRmZAtTsM1CsljWDlK2eRrt4Os
u5BN1NLimyoeWZHt34yBbYOtRtP7ObH6RCVUjTGyjGJxJtnTIPB9D5Rg7EQFLZ2z97nJUFQ9m9sz8W
GwkZUmGA6DxFROa45z4ptidfoVTHI0M1BYFYnnFibOVtXN87VEPiNwK65DzEfh0N7LMVzoq4HKX6vZ
szRd7qWvPcgAY1w6EBspBHZYwjJ1TZKrBqUnRZEepKIj2eqofLlNmSeDgL25isujuUzjHQLE41d1nN
BM08ncyuJ4jtPO2Vxe02X4N3hOuYgSXFIxITfJ28hsEx4HZQjSvaalYAuTNMgcAzyf9rsMObWrnxuB
0aColgCr0F5YL0YN84Cp6
EIFIbIqP3dufnsG2IPI0a
7pNMa5sZgerNxw3VrP9Fo
ob1yrbrB1mqFuj8eQJmF6
PL7LA9iOdNLmPXUaFpnBK
q4oM4OqWprmfdPVbC0zin
YeH27qYxSKEUFXvo2ZAgu
6zQVQiwIkA53sQjWVj4D1
abcdefghijklmnopqrstuvwxyz
VS_VERSION_INFO
VarFileInfo
Translation
StringFileInfo
000004b0
CompanyName
Angus Johnson
FileDescription
Resource viewer, decompiler & recompiler
FileVersion
5.1.8.360
InternalName
new.exe
LegalCopyright
(c) Angus Johnson 1999-2019
OriginalFilename
new.exe
ProductName
ResourceHacker
ProductVersion
5.1.8.360
Assembly Version
5.1.8.360
Antivirus Signature
Bkav Clean
Lionic Trojan.Win32.Crysan.4!c
Elastic malicious (high confidence)
DrWeb BackDoor.SiggenNET.71
MicroWorld-eScan IL:Trojan.MSILZilla.25346
CMC Clean
CAT-QuickHeal Trojan.GenericFC.S29960742
Skyhigh Artemis!Trojan
McAfee Trojan-FVYT!0179EEC24965
Cylance unsafe
VIPRE IL:Trojan.MSILZilla.25346
Sangfor Suspicious.Win32.Save.a
K7AntiVirus Trojan ( 005aa5f01 )
BitDefender IL:Trojan.MSILZilla.25346
K7GW Trojan ( 005aa5f01 )
Cybereason malicious.6b8cf2
Arcabit IL:Trojan.MSILZilla.D6302
BitDefenderTheta Gen:NN.ZemsilF.36792.hm0@aGJXI2l
VirIT Trojan.Win32.MSIL_Heur.B
Symantec ML.Attribute.HighConfidence
tehtris Clean
ESET-NOD32 a variant of MSIL/Agent.DWN
Cynet Malicious (score: 100)
APEX Malicious
Paloalto Clean
ClamAV Win.Packed.njRAT-10002074-1
Kaspersky HEUR:Backdoor.MSIL.Crysan.gen
Alibaba Backdoor:MSIL/XWormRAT.91976aa9
NANO-Antivirus Clean
ViRobot Clean
Rising Backdoor.njRAT!1.9E49 (CLASSIC)
Sophos Troj/Agent-BJXT
F-Secure Trojan.TR/Spy.Gen
Baidu Clean
Zillya Trojan.Agent.Win32.3696781
TrendMicro Backdoor.Win32.XWORM.YXDIJZ
Trapmine suspicious.low.ml.score
FireEye Generic.mg.0179eec24965822e
Emsisoft IL:Trojan.MSILZilla.25346 (B)
SentinelOne Static AI - Malicious PE
Jiangmin Clean
Webroot Clean
Avira TR/Spy.Gen
MAX malware (ai score=87)
Antiy-AVL Clean
Kingsoft malware.kb.c.1000
Gridinsoft Clean
Xcitium Clean
Microsoft Backdoor:MSIL/XWormRAT.A!MTB
SUPERAntiSpyware Clean
ZoneAlarm HEUR:Backdoor.MSIL.Crysan.gen
GData MSIL.Backdoor.XWormRAT.A
Varist W32/MSIL_Agent.BUD.gen!Eldorado
AhnLab-V3 Trojan/Win.AntiVm.C5374869
Acronis Clean
VBA32 Backdoor.MSIL.XWorm.gen
ALYac IL:Trojan.MSILZilla.25346
TACHYON Backdoor/W32.DN-Crysan.126464.B
DeepInstinct MALICIOUS
Malwarebytes Backdoor.XWorm
Panda Trj/GdSda.A
Zoner Clean
TrendMicro-HouseCall Backdoor.Win32.XWORM.YXDIJZ
Tencent Trojan.MSIL.Agent.16000605
Yandex Clean
Ikarus Trojan-Dropper.MSIL.Agent
MaxSecure Trojan.Malware.74418669.susgen
Fortinet MSIL/Agent.DWN!tr
AVG Win32:RATX-gen [Trj]
Avast Win32:RATX-gen [Trj]
CrowdStrike win/malicious_confidence_100% (W)
No IRMA results available.