Static | ZeroBOX

PE Compile Time

2024-07-22 10:58:52

PE Imphash

f34d5f2d4577ed6d9ceec516c1f5a744

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00002000 0x00027e84 0x00028000 6.07627903712
.sdata 0x0002a000 0x00000318 0x00000400 5.93951794847
.rsrc 0x0002c000 0x00000240 0x00000400 3.53890262738
.reloc 0x0002e000 0x0000000c 0x00000200 0.101910425663

Resources

Name Offset Size Language Sub-language File type
RT_MANIFEST 0x0002c058 0x000001e7 LANG_NEUTRAL SUBLANG_NEUTRAL XML 1.0 document, ASCII text, with CRLF line terminators

Imports

Library mscoree.dll:
0x402000 _CorExeMain

!This program cannot be run in DOS mode.
`.sdata
@.reloc
  s4
o*GKH>
Z?_d
_b`*
ZjX8yC
WmjaU ~
v2.0.50727
#Strings
ComVisibleAttribute
System.Runtime.InteropServices
mscorlib
System
Boolean
RuntimeCompatibilityAttribute
System.Runtime.CompilerServices
AssemblyFileVersionAttribute
System.Reflection
String
GuidAttribute
AssemblyDescriptionAttribute
AssemblyTrademarkAttribute
AssemblyTitleAttribute
CompilationRelaxationsAttribute
AssemblyCompanyAttribute
AssemblyProductAttribute
AssemblyCopyrightAttribute
SuppressIldasmAttribute
AssemblyDelaySignAttribute
AssemblyKeyNameAttribute
AssemblyConfigurationAttribute
85f2b526-1682-4b7f-aa40-8878471f2e12
Stub.exe
<Module>
pMA9nJa2B3xMlUHy0h
CXZmhxEEnB6LL3BOYW
lWbj8ADpkEHKvgUPnQ
4XEKofXiCalhyBJusp
Object
Y2UZSXI9DIKFtAYpnq
WdbDsU2dlMAwx8m9oj
ApplicationBase
Microsoft.VisualBasic.ApplicationServices
Microsoft.VisualBasic
AZiVSd8ZnhMPYmlw7D
MNI1frpY6b3N8fv0Qd
Computer
Microsoft.VisualBasic.Devices
uvuyxmeIbl2WoD8lG4
ACRRjXSNKlp882b35V
ToZTtn4IMtXooCmoNU
WobdFaRcsjYFtA3dNY`1
MySettingsProperty
Settings
ApplicationSettingsBase
System.Configuration
M3OCXetv74f7qttLH3
i5haSG0skmGyhIrrXY
System.Windows.Forms
kaGVqWJNMNNBZxOwlo
MulticastDelegate
NhreygcXXMdvaRRkkA
TvB7gJfGN9gpT09RRM
_Closure$__
<PrivateImplementationDetails>
__StaticArrayInitTypeSize=48
ValueType
RwareDE
Slowloris
bitgrb
XT4iBCFupUQ9au6Itk
hQQTeTqJ3wjG3IK3Jc
MyAntiProcess
e8EidKugxv0oT3hZhb
dvKml5dHoQSXUk4o2N
eCiW987TR5Ibh31mds
pFlVKO5Rla6cfdTJy0
nJ7YqJ6nmI3WEdijnS
peV13CQnQP3grsiyd1
XbD6AtTSZB4ZyWdgdx
LFJbmeWVK3TeWNmLpX
RL1A7LNbq3fxDIugcc
zjif7LbvlweFALVjF2
BHYAE1Xy36UDSRT7Ab
zSekKTvbMM9DSQEbBc
RheQbNAjIoawmFQx6i
StartNow
<Module>{470ED9FB-8ED9-44B2-A58C-E9D1F42B5121}
SJHAuXP8kkI3oEd4Bf
hqqkbtDckYx68AEW0j
SFU4mbT3GMret7THonf
ncnGZNwPfpCJUeCmtj
jjy1r1oiqDObu93Ed5
tOUZiAlcO1f3YtSt7k
Attribute
U8KFSA15ng3LWTH2ZF`1
kvAvLWUYRi3viAX1YC
BoaOwC3ROMc5p6JQcN
N4aOjGBWDvN49MNQJZ
VgVgQJs2QoKAbkMjPD
XvXl4GHu8Adux6krUw
u5xLqOg8GdqGkSvuow
CgtcQvZq6RjbQTMeaj
yGOIsMyETAuFG166ow
p0hjAbM8V95PRMc03L
<PrivateImplementationDetails>{AE7A8398-2CDC-4D5C-AA8E-02ADF757C094}
__StaticArrayInitTypeSize=256
__StaticArrayInitTypeSize=40
__StaticArrayInitTypeSize=30
__StaticArrayInitTypeSize=32
__StaticArrayInitTypeSize=16
__StaticArrayInitTypeSize=64
__StaticArrayInitTypeSize=18
.cctor
H2wMDEajD
JM0iu0fC0
CFoE8D6Cp
rV3o1AQj1
x4gyfDFxE
CAUlejgxd
p6OI4GDBD
N6NQasslP
hpmrBwgr0
thNdU6MWn
Vt0V0hPeP
Fi7nErDFs
WkOJytYXY
Equals
RuntimeHelpers
GetObjectValue
GetHashCode
nAeHhGpIO
GetTypeFromHandle
RuntimeTypeHandle
ToString
kjG1VVlwd
o6xjSWKD4YmYU72NNO
iXKmU2VwD0FZRL5MuP
Activator
CreateInstance
VIReZ1xJR
EJKRC4LXM0gCiqZxBK
rDlBAy8FO
HZQZ1YxZHL7Z5bGc2M
get_Settings
defaultInstance
SettingsBase
Synchronized
get_Default
Default
apkNDC7vn
IContainer
System.ComponentModel
yUexvOsra
bObPZeE2n
IntPtr
EventHandler
add_Load
FormClosingEventHandler
add_FormClosing
FormClosedEventHandler
add_FormClosed
Dispose
IDisposable
ppiCJjiTZ
Control
SuspendLayout
System.Drawing
Single
ContainerControl
set_AutoScaleDimensions
set_AutoScaleMode
AutoScaleMode
get_Lime
set_BackColor
set_ClientSize
set_FormBorderStyle
FormBorderStyle
set_MaximizeBox
set_MinimizeBox
set_Name
set_Opacity
Double
set_ShowIcon
set_ShowInTaskbar
set_Text
set_TopMost
set_WindowState
FormWindowState
ResumeLayout
OyNhxoVrT
keybd_event
user32
qmIW8gN9u
UInt32
SetWindowsHookEx
user32.dll
yJbjP72Lq
UnhookWindowsHookEx
gaOvf6D2c
CallNextHookEx
KQKaYy8oh
GetModuleHandle
kernel32.dll
x9ATdiD5G
Process
System.Diagnostics
ProcessModule
GetCurrentProcess
get_MainModule
get_ModuleName
TGgRmjWh1
Exception
op_Explicit
op_Equality
Marshal
ReadInt32
ProjectData
Microsoft.VisualBasic.CompilerServices
SetProjectError
ClearProjectError
N2QgMbHjq
EventArgs
Concat
Application
DoEvents
System.IO
GetTempPath
Exists
yrJ5EwdTe
FormClosingEventArgs
get_CloseReason
CloseReason
CancelEventArgs
set_Cancel
zbsuJ6xMU
FormClosedEventArgs
BeginInvoke
IAsyncResult
wParam
lParam
AsyncCallback
DelegateCallback
DelegateAsyncState
EndInvoke
DelegateAsyncResult
Invoke
K5Ky1rsOcR
jFGyeyWlwa
Y75ylcTT3a
dQJyFw0Cpk
I36yBHTd6c
veCyCw8LOC
wMSyhwfNGY
TcpClient
System.Net.Sockets
Rb4yW8trdy
Ayeyj6soan
MAHyvUSB81
VrXya5Qwr1
R7wyTDptwL
FileStream
tgbyRPXDsx
yYvygZoZax
jMsy5Fh5MX
it3yuowxit
ahJyNiW9Io
IZLyxfVrT1
sMIyPsJGS4
VxJy8S3iLf
K9Sy3dbYsA
FileInfo
vCDy4eGT6X
MemoryStream
ysOyO7I69J
fJnyDRVPww
TWMy2gFKte
yfdywAv0Am
U0by74px3R
G3pyfSCJrx
orCytR1G28
nXYyqgJXB8
MSHyXeeRym
QffyL0bhli
m9wy9gNNbw
Conversions
ToBoolean
Assembly
GetEntryAssembly
get_Location
caU8Ovu5r
GoH3ih4m3
SessionEndingEventArgs
Microsoft.Win32
btx4IqAmJ
Encoding
System.Text
get_UTF8
GetString
oQ6OfxtT9
capGetDriverDescriptionA
avicap32.dll
a7eDtX4dg
DirectoryInfo
get_Name
ToLower
Operators
CompareString
get_Directory
get_Parent
z6E2AIDLe
Thread
System.Threading
Monitor
ToDouble
Stream
set_ReceiveBufferSize
set_SendBufferSize
get_Client
Socket
set_SendTimeout
set_ReceiveTimeout
ToInteger
Connect
ConditionalCompareObjectEqual
ENIwnoG4a
Convert
FromBase64String
I0h7AoUoi
ServerComputer
get_Registry
RegistryProxy
Microsoft.VisualBasic.MyServices
get_CurrentUser
RegistryKey
OpenSubKey
DeleteValue
jcUfRFSND
oket1Tbqq
ToBase64String
txcqJWEIa
GetForegroundWindow
L5GX63l1P
GetVolumeInformationA
kernel32
RMZL2m1AZ
GetWindowTextA
WSa9uP8GK
Strings
MOVb2d0Z7
get_Length
WPoKl3T92
GetProcesses
get_ProcessName
Contains
get_Id
ybS61RA1G
ManagementObjectSearcher
System.Management
ManagementObjectCollection
ManagementObjectEnumerator
ManagementObject
Environment
get_MachineName
GetEnumerator
get_Current
ManagementBaseObject
get_Item
MoveNext
mNsSRrPkc
GetWindowTextLengthA
IsIpJaA5O
GetValue
S0ZUYfMAr
Interaction
Environ
Conversion
IuBkdTOgy
s0PZWLM3x
ObjectQuery
ConcatenateObject
Dqk06xGCE
SwapMouseButton
uBnmrjHXS
SendMessage
wIfYiWFd7
SetWindowPos
crgG5qhOR
FindWindowA
RgSAfY3m1
ShowWindow
aPiccpXTD
SystemParametersInfoA
OaazpiTJJ
WebClient
System.Net
StreamWriter
EventLog
HttpWebRequest
HttpWebResponse
Rectangle
Bitmap
Graphics
CompareMethod
Delete
Create
ShowDialog
DialogResult
get_Chars
ToArray
GetTempFileName
WriteAllBytes
ReadAllText
SetValue
GetFolderPath
SpecialFolder
GetProcessesByName
TextWriter
WriteLine
get_Info
ComputerInfo
get_TotalPhysicalMemory
UInt64
Format
Directory
WindowsIdentity
System.Security.Principal
GetCurrent
WindowsPrincipal
WindowsBuiltInRole
NewLateBinding
LateGet
Registry
CurrentUser
CreateSubKey
get_ExecutablePath
RegistryValueKind
EndApp
SaveSetting
GetEventLogs
Clipboard
ThreadStart
SetApartmentState
ApartmentState
ParameterizedThreadStart
WebRequest
GetResponse
WebResponse
set_UserAgent
set_AllowAutoRedirect
set_Timeout
set_Method
get_FileSystem
FileSystemProxy
WriteAllText
MessageBox
MessageBoxButtons
MessageBoxIcon
MessageBoxDefaultButton
MessageBoxOptions
AppWinStyle
CreateObject
LateCall
ChangeType
DownloadData
get_Message
LateSet
CompareObjectEqual
OrObject
Screen
get_PrimaryScreen
get_Bounds
get_Width
get_Height
PixelFormat
System.Drawing.Imaging
FromImage
CopyFromScreen
CopyPixelOperation
Cursor
get_Position
Cursors
DrawImage
ImageFormat
get_Jpeg
WriteByte
FileSystemInfo
get_FullName
pAKysiebjB
DateTime
get_UserName
get_LastWriteTime
get_Date
get_OSFullName
Replace
get_OSVersion
OperatingSystem
get_ServicePack
RegistryKeyPermissionCheck
GetValueNames
foKyyPZfuU
FileMode
ReadAllBytes
SetAttributes
FileAttributes
SetEnvironmentVariable
EnvironmentVariableTarget
get_LocalMachine
VtsyddETYl
GetSetting
EndsWith
Command
SessionEndingEventHandler
SystemEvents
add_SessionEnding
set_MinWorkingSet
ConditionalCompareObjectNotEqual
J6vyIdaGUJ
MD5CryptoServiceProvider
System.Security.Cryptography
HashAlgorithm
ComputeHash
aQKyVUT9in
NtSetInformationProcess
LaDyQq8YjA
Module
GetModules
GetTypes
get_Assembly
xwYynmusmc
get_Handle
qTxyr7eGhm
get_Available
SelectMode
GetStream
NetworkStream
ReadByte
ToLong
Receive
SocketFlags
N0lyJHRHhV
GetBytes
ab5yM3J904
eliyiYoKoi
z3tyEJfrMU
wt2yob9jyh
get_SpecialDirectories
SpecialDirectoriesProxy
get_ProgramFiles
GetLogicalDrives
DeleteSubKey
DeleteSetting
DicyHRItMd
GZipStream
System.IO.Compression
CompressionMode
set_Position
BitConverter
ToInt32
$IR32-1
_Lambda$__R32-1
SetText
openport
IPHostEntry
UPnPNAT
NATUPNPLib
Interop.NATUPNPLib
IStaticPortMappingCollection
GetHostName
GetHostEntry
get_AddressList
IPAddress
UPnPNATClass
IUPnPNAT
get_StaticPortMappingCollection
IStaticPortMapping
rt3ybKIdsr
x4QyKb4o17
Calcul_Time
InitializeArray
RuntimeFieldHandle
SubtractObject
GenKey
CreateDirectory
RandomString
Random
Substring
Launch_crypt
Work_File
MyPath
GetFiles
ReadOnlyCollection`1
System.Collections.ObjectModel
get_Count
DeleteFile
GetDirectories
AddObject
AES_Encrypt
RijndaelManaged
ICryptoTransform
get_ASCII
SymmetricAlgorithm
set_Key
set_Mode
CipherMode
CreateEncryptor
TransformFinalBlock
6EC7B65C95F92D8E0A3A4F808A3D58F17742B261
ComputeStringHash
Decrypt_File
od3y62C6wh
oKiySIr9NG
IndexOf
DeCrypt
AES_Decrypt
CreateDecryptor
ExeName
TvqypGBrlo
Enable
Disable
WorkThread
DriveInfo
GetDrives
get_IsReady
get_DriveType
DriveType
get_RootDirectory
get_FileName
GetFileNameWithoutExtension
set_Attributes
GetEnvironmentVariable
CreateProjectError
iGvyZ9HrGm
HnBy0CjgJr
COSym6Zaj2
wmQyY4eT2W
cjbyGiGpYn
iOPyADUW13
GMgycCt6yh
ebpyz0AqTI
StartSlowloris
Threadsto
set_IsBackground
jwsyU44qxT
StopSlowloris
R50ykHLtTY
TimeSpan
Stopwatch
FromSeconds
StartNew
AddressFamily
SocketType
ProtocolType
GetHostAddresses
get_Elapsed
op_LessThan
IlydsxA3aF
System.Timers
scanIt
get_MainWindowTitle
ElapsedEventHandler
add_Elapsed
set_Enabled
stopme
$IR1-1
$IR2-2
$IR3-3
_Lambda$__R1-1
_Lambda$__R2-2
ElapsedEventArgs
_Lambda$__R3-3
QXadIfxqHi
tuwdV5kJIZ
whVdQbMfIq
QbKdnDbAQ8
Er6drQdwg7
LF6dJPtbpu
ry2dMbUwgl
UQVdi85P0q
StartARME
Cq4dyhvppS
StopARME
sjSddty4Lj
VERdBicrea
KsAdCpu0qi
cwPdEMFevq
bojdoc53lN
TJLdHH82IW
LastIndexOf
StringComparison
pY5d1hnrW0
nKPdekrmKy
kgmdlQhorl
ProcessStartInfo
set_FileName
set_Arguments
set_CreateNoWindow
set_WindowStyle
ProcessWindowStyle
set_ErrorDialog
tV9dFQE4B3
get_MainWindowHandle
D3odWh1wD2
rLvdhk0psW
GetModuleHandleA
Handler
sender
AutoAnti
kDudfafLQ3
yq2dt22CbO
YyPdqcf459
UMWdjcoVRr
IsWindowVisible
Y6MdvAyt9w
FindWindow
McgdalcYnR
acPdTBKJ6Z
GetFullPath
MGjdRSRahY
RuntimeEnvironment
GetRuntimeDirectory
GetAttributes
ln0dgQ9rek
DirectorySecurity
System.Security.AccessControl
ObjectSecurity
SetAccessRuleProtection
SetAccessControl
taAd5VfRjb
l5EduTZLXD
IEnumerator`1
System.Collections.Generic
get_Programs
IEnumerator
System.Collections
bxadNPtU4p
LocalMachine
n4Ndxb6w0Q
PusdPoG2HJ
MoveFile
FileSystem
FreeFile
FileOpen
OpenMode
OpenAccess
OpenShare
lf8d8NsjAn
IsInRole
AD0d3BLhvw
qPgd4jeYiP
SxhdORSRo0
ProcessThread
GetProcessById
get_Threads
ProcessThreadCollection
ReadOnlyCollectionBase
op_Inequality
FPddDUJEhF
CloseHandle
woRd2pmmKJ
OpenThread
wbgdwbOOc6
SuspendThread
sQId7m2LxR
TerminateThread
value__
mKAdXggNZJ
jSSdLXXIA5
vxWd9Jukd9
lBjdbxtTqD
SizeOf
StringToCoTaskMemAuto
Finalize
FreeCoTaskMem
MqhdKMR2eH
csdd6R8lCg
d4MdSQa5UI
QkJdpLqo7Z
M9idUsXmid
x5WdkVIaec
D3udZVNEY9
eOsd09ObYe
GcedmUATvI
oXPdY4xPkh
yJwdGhfvQd
m5fdAdpcGA
AllocCoTaskMem
StructureToPtr
KYfIspUiS5
Vrgdckc51m
WinVerifyTrust
wintrust.dll
U9Jdzoj1kS
A0UIixtj8g
LUbIEXV9ag
ne3IoJ5Tbj
n7rIyOC1Qj
DateAndTime
get_Now
hxVIdEjJ0T
get_Keyboard
Keyboard
get_ShiftKeyDown
get_CapsLock
ToUpper
FBiIInD63F
GetAsyncKeyState
WdnIVkp0xQ
GetKeyboardLayout
M1VIQSZ2ym
GetKeyboardState
e0LIn4bmbJ
GetWindowThreadProcessId
q1mIrXcrRR
MapVirtualKey
krpIJN9UjG
StringBuilder
ToUnicodeEx
TEZIMtDyKG
get_CtrlKeyDown
Remove
B08IHyc5mo
NUCnJ699w4Ga8
typemdt
FieldInfo
MethodInfo
ResolveType
GetFields
MemberInfo
get_MetadataToken
ResolveMethod
MethodBase
Delegate
CreateDelegate
get_ManifestModule
object
method
callback
result
KEMIcIxhDN
BZrVB1tqi7
dBcVyZmL0T
lHyVdIOQvb
osBVEXWCpH
QFwVQ8lqV4
hsEVHQ4Ynu
WX0Vj5whls
Hashtable
Q5fV1tnQ0c
oK6VCDDoTG
QWJVnlgTrH
QQEIzqyvBQ
bS6VFKkFZ0
nfiVrdH4LH
mCZVokdUK3
EAjVIT6Qda
cZuVMtFxPm
I2uVJxUeY8
jV8VsjxyM6
qBjVhtWp5p
poPIAsg1ks
DEVViGXYVl
SortedList
XPdVe93mZd
mQjVlKkOho
cjtIG8YbbZ
pb1VWQOiar
VMJVVna2QJ
RSACryptoServiceProvider
set_UseMachineKeyStore
mnbnJ69ChIq1J
A1mI1DgWD0
dhuIeARhF2
UInt16
z9cIlnNWdG
VMmIF1vng3
SFrIB2JvG0
HmJICJSbbA
hgUIh7UZqZ
XgFIWpDQX3
ObjectHandle
System.Runtime.Remoting
Unwrap
mNvIj5kKQL
aG0IvD9kIZ
j4cIaRxIux
CryptoStream
BinaryReader
CryptoStreamMode
vTKIggS4Zn
nf8I5Tk5hi
get_Unicode
KkLIuphlrW
RtlZeroMemory
bYFINukN8Q
VirtualProtect
rkmIxEPFcf
FindResource
IL7IPxehd1
VirtualAlloc
M9fI8IY99J
get_Size
ReadInt64
WriteIntPtr
WriteInt32
IHbI3K13v7
h5SI4rBpPS
oS9IO5cxAn
GetMethod
KkLIDmuIgi
ProcessModuleCollection
ToInt64
ModuleHandle
GetField
BindingFlags
GetType
E7LI2JsDwp
GetName
AssemblyName
get_CodeBase
GetProperty
PropertyInfo
cD2IwR3Cfo
LoadLibrary
eUdI7VlRIl
GetProcAddress
wFXIf8eRhK
WriteProcessMemory
x1jItdiQQH
ReadProcessMemory
tmMIqUM0TS
dpwIXfelQV
OpenProcess
M7DILXb8Co
wJUI98MaEp
FileAccess
FileShare
SyCIbXpFqj
set_IV
f9BIKtrNtt
tHHI6dkeWi
s8EIS3qoVD
TpwIp6vGaV
USdIURhRTR
EZHIkHLtP6
VJuIZi5pnN
ypyI0nhwuv
bnJIm3GMLD
zx8IYZcLWI
royT9HQCAawFjcbyKN
GetManifestResourceStream
SbxvufpO19lpYXrp4a
get_BaseStream
JwCGRdJ4kteD9dSkHb
Dp9ud9VwqYI11beZa3
kNA7Cg6nx3hOFkjKP1
ReadBytes
NvjJxPFPkJEW8GUPIC
kEhCISctbKnsBV3fPj
Reverse
zhF0sRSfyB8xnyuCSp
IXFb0D2e5nQLDREILI
GetPublicKeyToken
EXAUnZElGaJGCLGUg8
RPaPrIw5tFwg6eynxw
a7N4k8bpBYc3flKvnK
RY27J5j0aI6ZIS7dx3
xGtQBmPWOvM2x0dS9h
FlushFinalBlock
FPq8m4NxicSA0mYWMq
UiScHk3NSLK0Mn4nYF
G0BWNbHrLB8UZH3QNO
yDTSqgxnR7d7sVrowk
ackLrs1keARQMnMrYj
N2tr8C8JY112m7RSJD
EV5Hg9lPJPDriaQ6FT
Q9LfS8t7rAp23CUCbC
D9MRVHelpNXX69glvh
gCRtXr6as7WwVppbsr
cmNCMTIeELh55VGawH
m1U4J7JuEyVknjcFfe
CEA4CqfFFwXrFFyC1Z
Ic49hpbBlyi8eHpLxk
aRZ2jKMlhDoGeT1ek3
KPZoF8qeSHQEQDD5om
ePrlS4KPM2dsFF0nDm
Lxww98RqCM8Hfsa9Qo
iG4MvsLljpdU9c9vLh
csdSfVrmY06j9BX5ot
oQkEKEaavWIjMyXyQK
obFfWogE3Ojg1pm7v0
IFg41OBCdxqsBhAEXx
qCMAwfS5YDxiflVO3o
vjtmJF9KLDu2LQNkAf
G5IArqoPOk3ssOLMsB
AXw4oOPJoN9W1ikB8s
or31lq1vsq580ZpRlX
lfAGtlqgFqUveFfSAF
ReadIntPtr
wm1xXxXOwre6MNsXbb
vK09oninBXeN03SD0a
PpStKloFBPlJLwqJUt
tuWMNRGo00si7RVEOH
yXINKrScXT2t4neIYe
WriteInt64
F5XEheWLQAh34YNsKr
L7HHt1kuJehPoUm4Hi
b0sokLutl2n1PN2Sks
yfTcQQQ1NvhTprV3MZ
R1I13OMbBWPcUat8ts
a3acQ4EoFJYhmjIo5o
get_BaseAddress
Y0EU60KxBXdMj70ktC
BvRVAhgGjPoYXL0Ui6
GqSYD950soGX9XLixF
Su6M1r6LMYiUrC0hCA
DXQQOlIFdcQhxBU02q
KRCdCgyKPWt3HlWDwm
NYYvaqeQLmjxu0ZS6T
eHvi3f3ZiMACdKTDKZ
aF1D4CCBHWXsI0cJQi
beYqKt1jP8Gn0PI36j
zUrBmDxYYyIKo5tBMM
clehqfNMax9EYFUm7Q
GetHINSTANCE
atTDiumfbiEy6ZpRyN
cpLbBJacGRCUx8EpeH
dQ54xVsvEspQAYqQrK
tiRe194kYbH3XwO5dU
eiqbNurqBTDGoKqPe3
AORhYU9V8v9MbVtuLO
CBoRIUvbY0V1O6JAnc
SDeqTapc19awSMufAH
vjY5yLc0B9lO1H4S0y
BnusoC7imTXDO96Nje
f5WXpDZxTAdOPlAN5i
Jy2rtQBkdPbOBx00XB
o89HLZPjs9M8G9HuTy
Kmgipojir2AT8Awe6X
hDUhhFTBmQoYy6lIAO
KGHbkMt5cH02ZaAGdv
oqpP2i840t80W1J5OI
dWiN05dCCmoFxacFho
Qn45ZhnAES3GFTnnso
V8Hm8dFDkTirExTmlv
dPkkxVOKUd14p3RSI2
t8ttanffcWrUf1N1jQ
nM4Igm2RGZ02jU9hHb
Nl9Fk9YXyEYkkU1bkA
oCxYRuUTbqobQCKcfE
o2LgU80POHKhS29asl
I6oUCoDbKkNUnU3dox
GetFunctionPointerForDelegate
w83WwKhl6dTRc6Ho5i
get_Modules
TZRvvuRKcvPQ0AkWG3
pNnMk2LMp9IUG86QEH
We5PgTlhKKP3dJVVKI
aDFst5bK8PQcfHgp2A
hINuTfJmX40k5Pf89I
get_ModuleMemorySize
tyI0tDw4R0d6TCEsti
get_EntryPoint
AYqaSuzBrCgZrVv5OD
RDCuvdAHprM9eIcil04
UO3t4KAAY8CfhBu1BPp
get_Method
silGWFAV36TjaVu8796
NXO0veAq7WTnFKiy3yP
GetParameters
ParameterInfo
fAKyRmAXIeJhOUFpLJc
fyjAOQAieId0iPfSKcH
get_ModuleHandle
hLKhlJAoDQfpZslsS88
wg1YquAGNuLSfmDyvhm
hex4G6ASyVW56T4VyOT
RRkxXjAWf3c9tZ7yaiT
PrepareDelegate
SXJjrlAkbrqUasPBjm1
RuntimeMethodHandle
get_MethodHandle
LQfX7RAuUWdK2UhSO8N
PrepareMethod
H89ShVAQg6m4yl7anfH
SHlmT2AMfViCxRiWY85
DAW9AQA5dxZq54ehES
J9K5iVVJ2eENCRsynH
aFwkO99HHrdAgg0WmN
ce4DmfsmSrOT856tDgfrkMb
KGjVvHpp9v
classthis
nativeEntry
nativeSizeOfCode
hJUVa0vaJb
XJsVT99dYS
bynVRVuAfK
G3BnJ69z9mU81
Qs3VgSHrdU
YxJnJ6CyUktBA
GetRuntimeTypeHandleFromMetadataToken
aycnJ6Crarxj2
GetRuntimeFieldHandleFromMetadataToken
$$method0x6000007-1
$$method0x6000020-1
$$method0x6000020-2
$$method0x600002a-1
$$method0x600002a-2
$$method0x6000039-1
$$method0x600005f-1
$$method0x600028c-1
$$method0x600028d-1
6UHL6Ua30tLwawlbIO.lGKYMGlHw8PmbojeXS
x0MF3G6iM4HHUw8VBb.yF5gWJFmE4HYKVNi5X
Stub.g.resources
aR3nbf8dQp2feLmk31.lSfgApatkdxsVcGcrktoFd.resources
W1gnu1JKBwGDXpV2se.gPfWiUkxmrTkHuP9iD
GeneratedCodeAttribute
System.CodeDom.Compiler
EditorBrowsableAttribute
EditorBrowsableState
DebuggerHiddenAttribute
StandardModuleAttribute
HideModuleNameAttribute
HelpKeywordAttribute
System.ComponentModel.Design
MyGroupCollectionAttribute
ThreadStaticAttribute
CompilerGeneratedAttribute
DebuggerNonUserCodeAttribute
DesignerGeneratedAttribute
DebuggerStepThroughAttribute
FlagsAttribute
STAThreadAttribute
UnmanagedFunctionPointerAttribute
CallingConvention
WrapNonExceptionThrows
1.0.0.0
$1F8B2271-7303-4F2F-8B4B-556A5FCB3C86
Copyright
2017
MyTemplate
11.0.0.0
My.Computer
My.Application
My.User
My.WebServices
4System.Web.Services.Protocols.SoapHttpClientProtocol
Create__Instance__
Dispose__Instance__
My.Settings
KMicrosoft.VisualStudio.Editors.SettingsDesigner.SettingsSingleFileGenerator
15.3.0.0
jjy1r1oiqDObu93Ed5.ncnGZNwPfpCJUeCmtj+tOUZiAlcO1f3YtSt7k+U8KFSA15ng3LWTH2ZF`1[[System.Object, mscorlib, Version=2.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]][]
GZLWx'
GdmaPaF
hV>J):
l99U L
CEt/(/
z)O0-8
[ql^'XN[
IO2Nh\06
3D?X=|@y
g$kT22
nNULqz
UcytDO
_Sa)Z?ON
ngk=y&
*mTd<X
omcAwp
\7|OiM-
Ib+pVl
B[E\uSdD
0'Z:L{
tcj=6:&%
sG!kTp9<{
:*@yh5
US]BdO
4).wy8
uI]v'
%;iBf
<^M\W
w,FG!F
[rKS8
Qlj5}]
6k}+}ByI@
vAkoH5
6.+Y8^
]wFcQ/
hl[`$S9
lSystem.Resources.ResourceReader, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089#System.Resources.RuntimeResourceSet
PADPADP
lSystem.Resources.ResourceReader, mscorlib, Version=2.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089#System.Resources.RuntimeResourceSet
fSystem.Drawing.Icon, System.Drawing, Version=2.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3ajSystem.CodeDom.MemberAttributes, System, Version=2.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089mSystem.Globalization.CultureInfo, mscorlib, Version=2.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089fSystem.Drawing.Size, System.Drawing, Version=2.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a
QSystem.Drawing, Version=2.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a
System.Drawing.Icon
IconData
IconSize
System.Drawing.Size
System.Drawing.Size
height
ISystem, Version=2.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089
System.CodeDom.MemberAttributes
value__
System.Globalization.CultureInfo
cultureID
m_isReadOnly
compareInfo
textInfo
numInfo
dateTimeInfo
calendar
m_name
m_dataItem
m_useUserOverride
System.Globalization.CompareInfo
System.Globalization.TextInfo%System.Globalization.NumberFormatInfo'System.Globalization.DateTimeFormatInfo
System.Globalization.Calendar
System.Globalization.CompareInfo
win32LCID
culture
m_name
System.Globalization.TextInfo
m_listSeparator
m_isReadOnly
customCultureName
m_nDataItem
m_useUserOverride
m_win32LangID
%System.Globalization.NumberFormatInfo!
numberGroupSizes
currencyGroupSizes
percentGroupSizes
positiveSign
negativeSign
numberDecimalSeparator
numberGroupSeparator
currencyGroupSeparator
currencyDecimalSeparator
currencySymbol
ansiCurrencySymbol
nanSymbol
positiveInfinitySymbol
negativeInfinitySymbol
percentDecimalSeparator
percentGroupSeparator
percentSymbol
perMilleSymbol
nativeDigits
m_dataItem
numberDecimalDigits
currencyDecimalDigits
currencyPositivePattern
currencyNegativePattern
numberNegativePattern
percentPositivePattern
percentNegativePattern
percentDecimalDigits
digitSubstitution
isReadOnly
m_useUserOverride
validForParseAsNumber
validForParseAsCurrency
Infinity
-Infinity
QSystem.Drawing, Version=2.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a
System.Drawing.Size
height
_CorExeMain
mscoree.dll
Rfhn M
<?xml version="1.0" encoding="UTF-8" standalone="yes"?>
<assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0">
<assemblyIdentity version="1.0.0.0" name="MyApplication.app"/>
<trustInfo xmlns="urn:schemas-microsoft-com:asm.v2">
<security>
<requestedPrivileges xmlns="urn:schemas-microsoft-com:asm.v3">
<requestedExecutionLevel level="asInvoker" uiAccess="false"/>
</requestedPrivileges>
</security>
</trustInfo>
</assembly>
!B4)BE9BEABEIBEQBEYB}iBEqBEyBE
*),+-,.+/+0+1+2+65758595:5;5<5
i5haSG0skmGyhIrrXY.M3OCXetv74f7qttLH3
System.Core, Version=3.5.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089
System.Security.Cryptography.AesCryptoServiceProvider
W1gnu1JKBwGDXpV2se.gPfWiUkxmrTkHuP9iD
6UHL6Ua30tLwawlbIO.lGKYMGlHw8PmbojeXS
{11111-22222-50001-00000}
GetDelegateForFunctionPointer
System.Reflection.RuntimeModule
m_pData
x0MF3G6iM4HHUw8VBb.yF5gWJFmE4HYKVNi5X
file:///
Location
{11111-22222-40001-00001}
{11111-22222-40001-00002}
{11111-22222-50001-00001}
{11111-22222-50001-00002}
$this.SnapToGrid
$this.TrayLargeIcon
$this.Icon
$this.Locked
$this.DrawGrid
progressBar1.Modifiers
$this.Localizable
$this.Language
$this.GridSize
$this.TrayHeight
progressBar1.Locked
Antivirus Signature
Bkav W32.AIDetectMalware.CS
Lionic Clean
tehtris Generic.Malware
ClamAV Win.Packed.Razy-9960873-0
CMC Clean
CAT-QuickHeal Trojan.YakbeexMSIL.ZZ4
Skyhigh BehavesLike.Win32.Trojan.ch
ALYac Gen:Variant.Jalapeno.1494
Cylance Unsafe
Zillya Clean
Sangfor Trojan.Win32.Save.a
K7AntiVirus Trojan ( 700000121 )
Alibaba Clean
K7GW Trojan ( 700000121 )
Cybereason malicious.3c1602
Baidu MSIL.Backdoor.Bladabindi.a
VirIT Trojan.Win32.MSIL_Heur.B
Paloalto generic.ml
Symantec ML.Attribute.HighConfidence
Elastic malicious (high confidence)
ESET-NOD32 a variant of MSIL/Autorun.Spy.Agent.DF
APEX Malicious
Avast Win32:MalwareX-gen [Trj]
Cynet Clean
Kaspersky HEUR:Trojan.Win32.Generic
BitDefender Gen:Variant.Jalapeno.1494
NANO-Antivirus Clean
ViRobot Clean
MicroWorld-eScan Gen:Variant.Jalapeno.1494
Tencent Worm.MSIL.Autorun.ca
TACHYON Clean
Sophos Mal/Bladabi-U
F-Secure Trojan.TR/Dropper.Gen
DrWeb Trojan.DownLoader26.20026
VIPRE Gen:Variant.Jalapeno.1494
TrendMicro Clean
McAfeeD Real Protect-LS!A668CB93C160
Trapmine malicious.high.ml.score
FireEye Generic.mg.a668cb93c16026b6
Emsisoft Gen:Variant.Jalapeno.1494 (B)
SentinelOne Static AI - Malicious PE
GData MSIL.Backdoor.Agent.AXL
Jiangmin Clean
Webroot Clean
Varist W32/Barys.BG.gen!Eldorado
Avira TR/Dropper.Gen
Antiy-AVL Clean
Kingsoft malware.kb.c.1000
Gridinsoft Trojan.Win32.Bladabindi.sb!ni
Xcitium Clean
Arcabit Trojan.Jalapeno.D5D6
SUPERAntiSpyware Clean
ZoneAlarm HEUR:Trojan.Win32.Generic
Microsoft Backdoor:MSIL/Bladabindi.AJ
Google Detected
AhnLab-V3 Trojan/Win32.Bladabindi.C2442346
Acronis Clean
McAfee Packed-WL!A668CB93C160
MAX malware (ai score=87)
VBA32 Trojan.MSIL.Buts.gen
Malwarebytes AutoRun.Spyware.Stealer.DDS
Panda Clean
Zoner Clean
TrendMicro-HouseCall Clean
Rising Backdoor.njRAT!1.9E49 (CLASSIC)
Yandex Clean
Ikarus Win32.Outbreak
MaxSecure Trojan.Malware.300983.susgen
Fortinet MSIL/Bladabindi.AS!tr
BitDefenderTheta Gen:NN.ZemsilF.36810.kqW@aaB9QAo
AVG Win32:MalwareX-gen [Trj]
DeepInstinct MALICIOUS
CrowdStrike win/malicious_confidence_100% (W)
alibabacloud RansomWare:MSIL/Bladabindi.AS
No IRMA results available.