Static | ZeroBOX

PE Compile Time

2024-10-14 18:15:29

PE Imphash

f34d5f2d4577ed6d9ceec516c1f5a744

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00002000 0x00000864 0x00000a00 4.61340889387
.rsrc 0x00004000 0x00000594 0x00000600 4.09502777229
.reloc 0x00006000 0x0000000c 0x00000200 0.0815394123432

Resources

Name Offset Size Language Sub-language File type
RT_VERSION 0x00004090 0x00000302 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_MANIFEST 0x000043a4 0x000001ea LANG_NEUTRAL SUBLANG_NEUTRAL XML 1.0 document, UTF-8 Unicode (with BOM) text, with CRLF line terminators

Imports

Library mscoree.dll:
0x402000 _CorExeMain

!This program cannot be run in DOS mode.
`.rsrc
@.reloc
v4.0.30319
#Strings
Task`1
<Module>
RLPR_DL
System.IO
mscorlib
GetByteArrayAsync
IDisposable
GetTempFileName
Dispose
GuidAttribute
DebuggableAttribute
ComVisibleAttribute
AssemblyTitleAttribute
AssemblyTrademarkAttribute
TargetFrameworkAttribute
AssemblyConfigurationAttribute
AssemblyDescriptionAttribute
CompilationRelaxationsAttribute
AssemblyProductAttribute
AssemblyCopyrightAttribute
AssemblyCompanyAttribute
RuntimeCompatibilityAttribute
RLPR_DL.exe
Jusslif
System.Runtime.Versioning
String
Program
System
TimeSpan
System.Reflection
System.Net.Http
System.Diagnostics
System.Runtime.InteropServices
System.Runtime.CompilerServices
DebuggingModes
FromMinutes
WriteAllBytes
System.Threading.Tasks
Process
Concat
Object
get_Result
HttpClient
set_Timeout
WrapNonExceptionThrows
$acd523b6-8675-4170-95d0-3ce0ac97b5ce
.NETFramework,Version=v4.6
FrameworkDisplayName
.NET Framework 4.6
_CorExeMain
mscoree.dll
<?xml version="1.0" encoding="UTF-8" standalone="yes"?>
<assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0">
<assemblyIdentity version="1.0.0.0" name="MyApplication.app"/>
<trustInfo xmlns="urn:schemas-microsoft-com:asm.v2">
<security>
<requestedPrivileges xmlns="urn:schemas-microsoft-com:asm.v3">
<requestedExecutionLevel level="asInvoker" uiAccess="false"/>
</requestedPrivileges>
</security>
</trustInfo>
</assembly>
http://87.120.127.223/CheckX-Cracked-VIP.exe
VS_VERSION_INFO
VarFileInfo
Translation
StringFileInfo
000004b0
Comments
CompanyName
FileDescription
FileVersion
1.0.9053.22064
InternalName
RLPR_DL.exe
LegalCopyright
LegalTrademarks
OriginalFilename
RLPR_DL.exe
ProductName
ProductVersion
1.0.9053.22064
Assembly Version
1.0.9053.22064
Antivirus Signature
Bkav W32.AIDetectMalware.CS
Lionic Clean
Elastic malicious (high confidence)
ClamAV Clean
CMC Clean
CAT-QuickHeal Clean
Skyhigh Clean
McAfee Clean
Cylance Unsafe
Zillya Clean
Sangfor Infostealer.Msil.Agent.Acvi
CrowdStrike Clean
Alibaba Clean
K7GW Trojan-Downloader ( 0059c9381 )
K7AntiVirus Trojan-Downloader ( 0059c9381 )
huorong Clean
Baidu Clean
VirIT Clean
Paloalto Clean
Symantec Clean
tehtris Clean
ESET-NOD32 Clean
APEX Malicious
Avast Win32:PWSX-gen [Trj]
Cynet Clean
Kaspersky HEUR:Trojan-PSW.MSIL.Fareit.gen
BitDefender Gen:Variant.Barys.424306
NANO-Antivirus Clean
ViRobot Clean
MicroWorld-eScan Gen:Variant.Barys.424306
Tencent Clean
Sophos Clean
F-Secure Clean
DrWeb Clean
VIPRE Gen:Variant.Barys.424306
TrendMicro Clean
McAfeeD Real Protect-LS!12F9806AD64E
Trapmine suspicious.low.ml.score
CTX exe.unknown.barys
Emsisoft Gen:Variant.Barys.424306 (B)
Ikarus Clean
FireEye Gen:Variant.Barys.424306
Jiangmin Clean
Webroot Clean
Varist Clean
Avira Clean
Fortinet Clean
Antiy-AVL Clean
Kingsoft Clean
Gridinsoft Clean
Xcitium Clean
Arcabit Trojan.Barys.D67972
SUPERAntiSpyware Clean
ZoneAlarm HEUR:Trojan-PSW.MSIL.Fareit.gen
Microsoft Trojan:Win32/Wacatac.B!ml
Google Clean
AhnLab-V3 Trojan/Win.Generic.C5619555
Acronis Clean
VBA32 Clean
TACHYON Clean
Panda Clean
Zoner Clean
TrendMicro-HouseCall Clean
Rising Clean
Yandex Clean
SentinelOne Static AI - Suspicious PE
MaxSecure Clean
GData Gen:Variant.Barys.424306
AVG Win32:PWSX-gen [Trj]
DeepInstinct Clean
alibabacloud Clean
No IRMA results available.