Static | ZeroBOX

PE Compile Time

2024-02-22 16:01:15

PE Imphash

f34d5f2d4577ed6d9ceec516c1f5a744

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00002000 0x00012054 0x00012200 6.08816594018
.rsrc 0x00016000 0x00000582 0x00000600 4.06313621216
.reloc 0x00018000 0x0000000c 0x00000200 0.101910425663

Resources

Name Offset Size Language Sub-language File type
RT_VERSION 0x000160a0 0x000002f8 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_MANIFEST 0x00016398 0x000001ea LANG_NEUTRAL SUBLANG_NEUTRAL XML 1.0 document, UTF-8 Unicode (with BOM) text, with CRLF line terminators

Imports

Library mscoree.dll:
0x402000 _CorExeMain

!This program cannot be run in DOS mode.
`.rsrc
@.reloc
v4.0.30319
#Strings
PfUgE6hoOabn9DkgJ7iJRIqo65m4VGzR20
4KuoPS1yE2Jfn2lodUmeXVJFj50
f51pzvsUJq5lfHGWShdoE4BPuTWx7qZCA0
w4ld2m6gO1lrdU3o5sE8eLWFULICwsxIG82CmDW8He5tMFCXlC9BbeIeMRDiTcNaXbnv7oj9EWbveiMo8YG0
m0pmBfUDSHPI0AhdqQjDsT6Tww6YTgLQ4UVXG2md4oLzr7QHOTuPM9YeWRbeyYZESJ0
xI8NovktXTaCMNfSbXfrYx50WLZ4zANZXwMAReF12fsINfoaR3yBP5Gu9Lzex90BeQ0
SLLjJvb82m4WeACHcZLFy9QNhzYAVHuAaS6dOojJUbjLg3Rf0K8F7XbcIyVlyzbQdT0
AlSRjYknMI7UIb8zijENcVk0ymEyPu6TLxd64OLx1DsOoJk54oHpesTanBALsdSPRf0
7a649BxBdc2d3PagDCfQIl4OVf0
QF8IcgtxllLF2ibhmvQl7Aqy0GQT8UkTg0
CaZ9nBL1bU4bhdC8cygmjVgt8y0
ONDkTVBGTbIeLN5r2qmOwCneWz0
TUrr7eWCN0c18fUTBB55c4Hi4drjF36S01
KnynhwKjUw7bwyvppjoWcT5L0obk1sdx61
ZyKai9T704Wbsao5zjRuMe3mPB2MoFdjJ1
iHO9e5YDJ1cKjEp4wh9NnYNQ9S1
gq21fyS5PgHBuihRdSucbUqISQcnjadQy6R6IP9EpyWvPfieTQb15vCU3cAKcqzslZ1
_Closure$__1
IEnumerable`1
ThreadSafeObjectProvider`1
List`1
j0OPmL8z6As9LFzKUBYcVBypJWHYGCZuUklOh62F2Jqg7An5UO2JR3vHjOmAVjczfZ8OysyQXFXKAKgTajg1
pj96cUEPqTdLBPkdf1hrtWdubFx6rqCapfugphDrchhSAin3KtbgmHVTzbitSsZ7el1
7qpN2PvLORsqi1fosPVINlUepX9MXhOEr1
8QCvRCLM3EuPkzMJcDtOcctUwu1
xk6yr5vpSpurWAtdh1QooqVwV6eepnkO9kxesKrDBENugrJM81IfdEPwlr1lYPfNG22
Microsoft.Win32
UInt32
ReadInt32
ToInt32
LOpzclqpstBIpgmlNs9aqXOACC2
0UGDZ6Fj7opV0NcECk1qs5uU3OtVkfkaD2
6ywT5P3BHRmQPPUzFrZkJZkH60OxNWtB3xCAUNAE7G0h2Ae019IZCq7JOAEfh07NdmFjpqam9Emx5wIORvI2
AZ69tmsZuTiKNr48UGFrCm6CvoJ2OZnEY2
Func`2
ViDXbkaopA5tirxTzBiOCtU6Lh2
PeLRT0HCLbLOrY1c1ZcwqnVlbhITB5ZGlgHqWHfHmObqAIsBztLv9eHLDgeRf4GXil2
VBLL1oTv8bgaP3PfATTSWnslKA7DuKBew2
2ywoXNxc4dECYtR7QNdPbeFgow2
jqZGJOMP2vO2KJNxAXHq9R1REamdgA7tCU3lDcARvMXgboPVGVmKhTwvtDkBevt2Lqc7AoyzWZCTcLd0XIE3
jwQRVM6uKE0VgQjsUeCf6rrAq4uUlue44MKKv516JkqYehXeYZtro74HBfDcJeCe0rijMTtj6ITSKevasOP3
7ofURSOarmPNeXT4Sa0qfaz30nNKWIvbz4ticaUiXW6RtaT8uvglr7XP9Bc3zjg4Cbe8CWXy5J6VzeglqvT3
tNjjSZ5IbFjVODNd8RlNUDsKHo9S74cUZ3
8KKLm9kMBD9lUDViTlIeINzS1z8UWm60h5LfNdEKj7ND2hBtuH5tCBwxvDFsxBpDOd3
gSUN3967qodcqfwmNtEVA4JhEl3
Hi0g8nb0mByehDGDFVdEYQgT3vWvU1Xl84
7haqvD9jrFXn3W7NkpumiJyywigCbCjM0CDdnGKJvr9AQ1vp2kX7Hylstk9iPPm0k4BZJI4po77B1REtmhH4
r2kWO1HPOL0PDDtNb1SgtyLrkH4
A8bCe9H1BC6gJMXH7X6fa0OVhi4
v9HuXEhUIJDMPGim4dAgzqbVNBhq3CIPv2LbXpSknqZ7EpOchmdzH4NmWgOUmAxamo4
4bsoBXG94ZDT489TGkI5a8puhH1KnehBGRABADeRgsZJEUWpB77pc1Ogo4tqhEdl6bZTKom7Zvxv99WLdWr4
5NQvHDWXisKWEGXDMuOCrKmzv5Pg3qrGu4
zZnJmp3VUybgaRiSRTiksrWdszIud8u7NY1rEPImTIxWOimhJ26H94eOXoFmGovuNh4ywY3ppu6nTZ4Oklz4
hNOTjHsqPjbrE3Phn5bEkBladADFSZyMr3kS5rVz1VLS4wJW0Or1ZmZnlaVY5H5tC25
XqiZ1I7ixw1874t5Tmp4Fzvt3o9XaKZ2koo090OUJRkrwneRRXHQkuBWsUNx94hZDB5
f7tv0befHkEIb1Cqm46TxeAsl6WET7xWls1Fqpi9Qt5LFsugFINwEESMnikuqBE0Gjg5bcdTqWHjYygrAVB5
0QkQJkwMltAsBpYi7P7ZZV4ClPaHnz2VF5
UUx3ZhNoyVqq8Es5I3CIiDWEHO5
Pg6ZW3YfcU540vvGIRE15q8v20XkqhDwV5
SK7AYQc2Qxrbk48r8koPnbnG8X5
QrtNADY4aJztkHGA34L0r6OjRu5
P0vh5omJzZ9vsF9edSJjlQ61nhWZQnhbvsi92dRIBgFjf6lLhQQQAWn3zVg4t3aQTC6
gzVKSY8VxsdQLcXrkJyZa4EQ7F6
eSg1p6oeUxdIzWxwxlqyKPKJbI6
jmHjZn7TZpRAhqrHYzVbsaWbhY6t9eEuO6
c8cjATEKnHLi8fO2dBHAmRaA2mGj0bKGgHiYYZomoADaPyYxaIB7vZZRHG4eUVR16fiw3Rnq5yHpcpwE8dv6
sulZiKK0JeAwmf2Twm5zo0AoH77
gkquVZ8SetK2Y0nOuifhN5iQGeAtcNmh77
umAq9TlRwbFwGwJlZqCGbcRS0v1VxRsiddcbcahhVhtkpirCNneVqVTiZZljYVj5RQQfWBMMq4qjdunCtiI7
3kAlDPDCBXnZBZnVLATbWXLtGn7
viDhdyMqNwetXea33mw2B9lzzp7
GSfWiJYUZvXfR7cLa69HtXgrj3yKfSjQVx2UBDnU4PnCqgtSNfwGrn53j1dEgYpvDkaLM0oyXCd96XLgJ358
get_UTF8
bTUBvgNeqnc6KsWVnZjgYa3A52Mk4VG5mSht3BaeFvYvKTNnK6ba2lUwFuvxsrj00V8
_Lambda$__8
PPvsf077Xb1QoG7ZiJHKRCS7PROZzaWOU3WV7qVx45RCUpSgOAMzpRbGeL4EGVKDD9AnU9BLafNvXEBrpbp8
dk9tyXZMuSjhuWGteZZkRsoZmqyWCPOYLqmAb33A4dNMsPb516ekyc6xd6eBg4b6dr8
hhVdpf9NVs55uzRV1p2zP5fxr416CAKF99
I0vsU1rG6WlvVOZUEUbUbeTMeD9
C0wXhrItPkIFgoKpGfUhw28dvG9
M3a0xPf1ZXeBDOBPmyU3nzrQtKxHMvnCuBzs3Ff75pTd7QUtlBd7pUGS06VRg230JQ9
b9gt9UPtidr28P0MZZxKdfuWIsrbBMeeS9
2cUJ1kTe77SboAyB9oJbqvpqmU9
LtZoREO1eOqdFAWAO8BvtJ7DZj9
OYFjjYN5Z6FGhhG9dHo3sLR6wJF03cOZr9
6jNYQWNQigLnwzeFkO7MTYN8rhDDKEZVZmEf4CL42xu0G3yePArwZNj6upZonsfywv9
M2XBHAIQTsLnxRuBtPXjeO5mPzSxSv45dgh64BEFr2RVi7NaKEajVpjxj9LaLtCYesU6OkGqlCmb82o2Jcx9
<Module>
U5OKzq5z6HbtNRdrrG1rgPppY3A
oIC3Gj11QNVOFz2AMRGR9VIhHDA
4M53D0cZbPOQ0rJnltcHPfHuzptWdYLXFA
zfxLP3HTDSGArbKCwU4tSsXT8xHosA4PLA
gQRUgW4egtmsrbiVafp2Uk9dft0c2UuFYXKq6ZZYGHNOpmRuJBZvHx3UGCfzoI71XNA
vxzLPhEcyiwhRL1zzcqIMNqAaGT6T5OtKEy5d0Pjqdo0TpfPQBOsEisj1bn4MIM1TkeioPREhPelbWQHGmRA
AjpkVCaKpYQqg1QzwxE6YyAYooU6zsqnzsYGhWYPgEKR6wcveys3caBM75dfZevuiAkrjlYtnhZL7Jd4d8eA
tDRMVJVZRPCj2FMNl7OHpq2SW84BakB0HsSHCBqxORssEf52f5WMhxHBr2r5oPrs4DTezs3kHvOb2PvDIZfA
sgFKTEE9chmvzF6NBp4b5jV79jA
capGetDriverDescriptionA
46Eo2aw0q4H4prIc9seL1NZlUywRvkNZFnTTvY6ttJHaV1Xlspk6lnE2dDW6KHrjpvA
capCreateCaptureWindowA
DqK9PsXMcaIa2FyCq8iEgbM33Tjb0YFk9QkhrjEuzLYpnNpbtjSgLAbtE8CX0h2KRyA
J7fVocJby5AgvZWSuN134drj6bvyxMNGtsbD7I7Al7kRHmciMhKjxf38oTvJJ2Dz33B
lECQRBtnEQt8xipGGvQaWwP5x5B
9gSO5wRK8rOr5q1PHw4xfgFWJ8le00JsTB
jSHzsEP3Za44XxFEwDJNojtXvqJb9uabhB
s46jhTeQf49exyWcns5Ncjl2G2GM1YQDOxFOYeUi6Q6KZhA6lAuyRdkknqScgdHoKkB
sok6KXtlitxQBFu5Tlo7gVHhSqGOCodGOYK3iYU15HbXyRYNKiRi7qd6OeUIGtbvXuB
n7wKizxtGuAfwiOS7TQO7spMliwG5dGt5AJZIk40kL3EPJ4LIJDrCp9ZoLBufTJli9tqdkREYlPjsCC1H0xB
suPxCSjxTNQMdqpfLMGgDDpWoxB
K61PvGzCrOh0Yixl6SEpc6RulilDykDijGnSgEORyCFm0nc7A0eJg7dPMUEqDegCGuPsUgyCcmT05O6sb0JC
VChBqukIbacMYcLrXa5pGC4H4maXmZycBSUWEq5lZPsrNlZyGraScjN1bJ2rsIUKtcKG813gsEyGzNPcZNMC
MReNFwoaFIujLKub4zod6c7gth2hcGvpVC
B7UcYZBdSV2hlo2jhBP3TmtFjWPGDMCzNlXEpaMvOkxiBnvJJy40ovsSkFTuPLtxfWC
0bF4m45ZQHWLFa18m7gvZj401gC
4i87mpl3BnCn7mECAs3ffYDX8vEwAf6CocZTJ7pqkmGasubSuyKDnp09gZveLxWnalC
ES_SYSTEM_REQUIRED
ES_DISPLAY_REQUIRED
GqQ9ecygHvHfrrqWeLg2AzrlmVD
CPUIdLc8x4EgsgJjkD7ojMzVXjD
yFx3KIctmFKcif1c9MwIKAkOcblx00LIqXuFQi5mNKk3EyFxHvobzmAW8NZNhAn30lD
gTDZNmNfGuD3NBCzT5PtS51JeQPuKa4tzD
Noc5UJ8e5kBxQyB1IEaM3yqrW4E
0KK8wPI1whlvym0inYpH8sven4E
iYJDQI6ltvghml0IxMT4KZKztSE
EXECUTION_STATE
fmg3q8p2BhPTIY9lUbzSvihYxcE
re7HPQKvgCRRyT5VLAm8DnD7HeE
vo6mzhWRxvEPH6NCgtk0jqBujtE
ZvuApODyF6m0tPvyndrOkrauy8En1fQYP12ZJJPYoxXhULWbVedmFBG7JBvo4bNJauE
qEyWiKv9wZYWWc6yfBSY7KxzLvsDeEQ62F
v0UyTCdegriSNuopRtSlxFV8CNF
n32hlYZLvyvs8dlyzTF5MJ2uutu9mo1iTF
HNSImdyXwVZzE6rHOyRiUdbelQcwPzESWF
XsZEYiBLuELfDEkod71qRm0lrZF
sRgqlSLmRsvq4liKTvVlPTdOmm4h9m3AmjdRERqC4QOjcmhdTudn4PnAG6OUjX62SfF
MMv02885RCKxGY7d8NiHhpbH9OhDlNZtzDbrxBiUsyoR44UtWCxOuRQoQCpj805gqnF
cvJn5mqMGLIYIDLaMMlU7WoZzvHJyizPrUrldsjZYbzZq1oHHH0XUj0v7AACUSKPnRa9PdPADmNbkmPgTMHG
kPPmlf0hXDTAxYKj1hxpkvBTi63aN7QH9XVoE4pkRg1D8mqXP1QqlQRteeCSJ7Ryw5uE04rsz1l2p5v8n2NG
TyLM1G1rfU0bR6Gl1GNk0sth73kwg7nFyG
IB962xBLmdRlhofq0YpQnPHYfbwcuhAu0H
tjeJkAGkoe3mnooB0eYiywtPNSePCCeANS3B8k4MuceSz5Y9r23SmmiDCRyGwtMJv0H
pmQbZApaAt05KOVlNQZv8j6BuU540x5xPjsIdG6ZJSF0KPK2Pxd5AoYlfM27IfcsP6H
u4cHa5hZMGlZiErAkcP87UFnCvPAHX4A8H
MLKNKDuAJNz0Klgc9nkIe9fF5JH
dwJCPu5XL3ITbQDcwCTkztZKGIkJHPcVcYZoDGhsYAekg7RbOgiSiUJKEO95DBuEpiH
lTwAX0Isya7lVfE3h8zBoYUkwoEpY5ammH
2NAY913kJqmTvhNfwWWY2i9uPMFDy1oXNFqQlldoJaiNNnJesByBgKu2PxdxuDIosnH
0NNVbPNFKCqJmUKbx10a5yydbfRNK8KJcwb67n16uuYsgivtPlXbWUDH0mJhY1mgJsH
OhrVJEgjIXBti2oNgOU8TKjRhynrj568zH
get_ASCII
HAc6FAjO6cOqvXHe2pyeLMErTEhagua2LI
YHxksPop8FdN3DCov4h69s3deLI
OND2ePN0IPXZop24ss4jHKywkSwjtsafjhaUThjDGvxsNjfLZ8YalcXTjLmiyFaMXMI
nyq2rEPWLPJWwVdVU4NLOMJAJdgUxVqvPI
HNYNOngogPPHHuAFXL0U77RqXPsJwqs7YI
zaaNUGKHSnPysBXSO4thoQfkZUlLG8DeaJlKhkUCh4HtgMqIEbGlZYGT7fN5y73rSjI
fcnVIGHwWTPdxBIflLAgBLmTSNIdxHXdnI
vUp4498C73g2frSBRDNIQHhDymY6LEhxzw9d0JfCaKwJ2eKsp4fXlnoT5s1YibqZ7oI
611kosf9tmrwSwcCWQ7tPG8swuymFrA9zWM0RE3tVBgQiZcIDrTqSMYvgwunhnDSSTn3U8ClC0cDPTC39MuI
yr1ftd8hlFEAuDZV8a3oX8qcSQ9zrFXMuI
EfM2Uor9Nx8uBVPiM8hEEX8TqRJ
1rVh3eUWnIuEvGkmoFIU8EupnNOV2oGZZTv0DGdDwzA5vcM1r7JCbI18nMAuBCdDKUJ
bWgFbwNFWcS7On7flxfGgn6oP3PNLyIhsij1qqqksZrg5XvwlU3rlPMCXGDfuLVUMbJ
p1gGqrBdcPSAh2PUSWXuanTdWgJ
k5DqnM9m0ZPbqOesaHV9dNv9G2K
OP9bwfIuwoS1VL1qLGjcAvctSDfJMJWahwggfdmQuKXeUyDVhm1o6gZVC9EgYWyB99L553FfDaejOCyj846K
DwDmAnN8OZ3C2zpdyYtA7uUkc94OF95OAyi6asQ9p0Y30XLOwHd5ctjkGZKoGccAWDK
Q98gYqwrY3Cbl5BO5kbfzaFu2SAbeqU0JK
ygbYao6noCX4LMnSGvluGzfcWRdzwofeHxFALjpf7RRMvZGGwBO89GPabWEWnIpUXsK
RVfWhUjVwDArpHbWu4kMXnHwGAL
as3tKbWBlOirKe7GFlxY5TKsimKbw6uzBL
TDSutj0pwjS8xtYGEYwg3PgUWTL
KySbB4nmrW9bzcp9JgpvQmMz80cV8PqKfLwuc5K4WO0E3U4f7ihl7taNUO8FGw8PBWB36QqdVlJCXxpUhMWL
pA73suEL2GehxQftrWsCAfJO1oL
jEdqmVlW4R1RdARl0nkLYd3MHusaX0g96M
Tbv41AhWlFWgG4qJ8uVqsoUaa5BCqIsP9Y63PbqraJjcBTiELK3DH57Du874csLxB8PybK4Exl0Vt9dnMiUM
95CJV7vSWtqhga3tmSV7jAExClujaTLWvyv1izdXfekRfE837YhJNz2lKYRUKaEfCVM
cULFKDhoLWj85ehqGPtgn85udXM
5iC0zxaLyWHGKVeENAkLLxsM9glIrk6zjtwC7rslhqeHm5BVLasb9IUzCx6Q2ixDTeM
LPz0Eh86jrqCaEvYvsZENc06Q0AL8qsxlM
mlo0D7EdYGz32BjQAJ08KrYxJIz0Ov1VFSv2dHjjvwixTtRnLhPUMxPJCM9IM2o1F22hhoX46kKPWerJilxM
3qgrp3fJhHlv68gEYoo7HbBEPbb1BfqU9Hld7YQNYqmqkKk7dZzXe205TOdKP4y5SCN
sbbkHLEbLBlhKc1obCv9oqGLMDN
1em9YIigMPRXUxarhhUtcWDnxvBdzCLELN
PfJUpXb1sonUKzKTeBQ0yvhjalXiILPoLN
RKFm7CfbLqRPprXKRQkr5uTwsvrKJjXExyOFOUzbO9fSz4exeB0918J108ik2umKDWN
myiFwSpuR5biTnzC9RLowOTX1PEbQ9gdi9qpAzybP70RpRgjx45ShuU92urOGFvQMjN
d9SFWrBpPAprePa23ZpqoRsfHsN
6k5ymyXzywSQeH7twfohKWwld7O
9rzE44HIJGxeGcbK44qNaSautGEivmQaqgyDrlUIqPdxsl6ywOHWoY4VYWyGLLEaMCO
rz0sHEqYGBkbT8WN8cJK5xLD1DO
LASTINPUTINFO
System.IO
y0KOXwOZ1K22VNskry9YSh9sc2ECxypcLO
2g6CRJxu00PHNaIt8A49SJ9UmLmwAQ2FQO
dYNX0kG0jMuMwtjvoSWETF8uSCoHthPlTO
BjsKLuTybt88JrHPDA7sN9CaGlAboVZAWO
fZzbt6M3ambkP2RT4yrqToqHf6IxmDEMiO
2RidigWFHGMLcR24ZZ60SyrEfrO
wT1upDQS489MMARGSizPFDjfBEHusphRsO
Fl8b27rSgsR1XUaol6CVZJJbpvO
C2set0ZCNWLayCDzZTeA7xURMXjMYwwQUeqGXqpwRhRJxUeTlxWNWhzijNk612tF7caSoEyqg7fWvHVMwHDP
g9kSmVFtfSa8rKI5qxsafoTfNQP
EOIIsvjt0e2LTe60f7x9xYp9LhFutc6NSP
IIS264UhMZiYvg3QGYSivEc46mQXZTlHQlcU76Mr5L33gepEGA5ynhChVKPd5rDvM2nxmSLS0QrO5xooqibP
ts1MfTDI6qFW4MQXNV9XDmr8bo8YMSjruENVcswfs45zE5ymFIdibeGfZneHsmpORYp1iICSWGGSQnp2oDoP
96oezBzK8kzS1sTsUyV7evrzYDKdrLP29aeJ6Tweoq3lMyNLDDjvRbnxJlpFZxbbdsP
hIjpDKJT20aMAIu5qS3ALMnCG0Q
ApRyvmZjjFQJMT0ck3hG8Td2ACQ
OpkQpZU1uH0nvg2HhKRGYL5pNCQ
R713rP4WpCRIaAO443sd87woSXQ
ZxjlqcttsG4mizkVYPknjmjn5ZQ
mCHX01BaazTzgxwuqHw0fdbwpAFfSsjDGr7n9dLuOyY4UCByfOtTTa7UhgLcnzYbM79J9SF3JE57gXg4NrfQ
AshzzZp8aNpyGBMwLIUoLVY1xMuZH6e0hlpdc9NpPrDknmSYXKo13irybH3ODxjj8J1mdE0HGhgwXJnMaoiQ
e9RkPsKqsqewiO2P3mKCqqgCVnQ
476Kkot0GvXN024Gn7WYlgjqsrQ
y8IfQG4vjqxjCYkqnR1bfSg9dsYkp5IUujQtjQU6b8RQN0RdkIhZsAir8Ma4ZCD5D1UaLrIDf7ozZUz1W7vQ
qjb03Ffpcb54IOGRzCAHai2zEdTUrVIlwQ
A5LWEJu7gtj0kKgZZoPxwWFqz0R
cqpnx8twr2lHqTCIPOdA12aVZFR
l5FIy5pervna77sNlJO9sTrDN61UrATGMovIEInuPPpTYu5DA2dy9dchKtuTuZ6oceBPglDvc3tOnTSKr8OR
ARFThBAGbbcBH0lBwT87ZXEnohR
EKvXld4Pa5tMyaHUd1N5i2Nx7UMr1DGpqGKnC1ykbuCdA9ln3kQK4er7uWBgqFBYm7eZTHhCTLXhhXNJgizR
lk69QWWXPR5YAaIGqs0omJ9Db4S
iiNvWLD09nvoF8tFeBEGkAIXOAfeBk3ATqngYxgqrPi5BYUEo9NMIao1OaFaWc47l4ArdoGdmrGS3h6zks9S
9838HR20oTpG22h2aDlGDi7U9NS
ES_CONTINUOUS
6h9ep4LKpPKGrHEhGmjDeCgyKXS
kJtNiNDPilNc5ocQIYJ2pHg5wFVTK4PbgS
LSn2CrWVJP3RRYiuyiH3uWpz4VKZylvoQ6AmpY5xMVFyU0Vq7NvUuak75laGgHqbQwARG4LxOOdLqVHvGNvS
zscxGX7eSIzt6MYyPEKaiLvF9JXbowxCFM5tXZPW834fhx0uVpcZSX8CSEkAXGvX9LT
s3t24jwHzSUuDEdtEbLpCrtA2JuVrsUf89W5uI1kmICAn3wI22w3frBe3Oc4G2EikOAF9w1tgfxqEc7pp0VT
OoHr256uxZZxUnO5gywMVJf1d00rf3UZLjL63AXGi2u0Z5VyMIjtQm7QzYLNIDwlvAhOuiGBgsXZwlqIMclT
Tsik9ekOmQVsjFjVFCsgwwaqwsT
nMuArQdbFmB6PXHq6bl2F357M0U
kZWVJA07caRqDBx4Ezj8B6KPGmUHywxx7U
8zOXZhnLWk0Vm5OqteEPb83FYpAu6OezpFoLFk5Ld2reMxX7jC9dL6tfczoVXoMikKU
p8IGwcctZiSyvSdweBoHzO4HETU
GOQsRGbcS1KvFdzyy0BVFHb7XSYC7lnKACSh7PnXcuZV9GJ7BKD9QLa2tEe0fDMYPzGbICajFwrray53b4dU
I4eSLwOQJv7Iq9lFmVVqcPnKVMSMu92afU
38YoME7v8PZ7MZdR8fp6gQNLgkU
PF1fOEbKyNlqqxv06Xm0NrB84ZUDn4FIqsJC3Y2B4kJMvdNanskfDb6goXqYKHbpXwU
VZiof69WnLjm1PaoqNddPuIxrKyQttvt4wqDwUr6HFrhuPVGJ1Od4hb3sk3yUAndu1V
Ly66dNUDt2CLr5vcLYU3PxqHN2V
wq6Ne7FbDnPO5ee0ZNOecgIeo6V
UtZE4ERqGrITHw1uTYS6icyVjzImvfOsAV
aFoixAXDKuN5psdbBsJGXHWDm9LwgDLrF0Uv4COoTmhc4kQBQg0aWCgPAGcZMGvtLHV
v8QymsZvOxRuRr2ErUMPJJirHYV
zPvW2Sh8soDKq64xtxWfoya7N0v4pkXH4cfYnS9OtIwusUkXJgcPLwLcmmxnmouWsp3dkRkXlW5vMtuZmybV
aS2coZ6zN9bUo69ZUEoFDeVO5zJtPcQdhV
8rJ4BtF7NSCHyeROdlAO0Kj4yxpZV2IgERE7OF744mf6xMX83Iwx6hh3KXNUdw3lTqRF6m99zXo5G66tPy4W
MwExKJsUO1D5JYQlDWnufGFVW8RaBVwl1ypUBtCRoa0KwtVKoYIckLLCQ7W1CLKVzBW
Jm9glGpo1L8coxVUQyn2xWd2rrHbGoUbosGGBlVm20wTmNcvTarJP5msmXFr27FKpgsYGJGJySF473gRMsFW
laSowyvsgiMPBQAUTvDri8A8lGMi1mWHncuMF3LmEEUC4nIJ4CC9iF0SIUpjUg2RRyMHXkrQpr4kjx5N5EHW
otMZPi3cElZQvysEs4I89ywi2KrA2zWv1CTNjj5cCZ6Gjau80s6TU6aTZrvmw61mJC0GK5B9Af8c85uqDwYW
uMkJkdojWd625C7S0qmabvD73u9lFfGek60mC16UmRFINh0rCjQyMivnwM3OyNqyGtW
XWlERxu69s0YNGpOACGqYlUCLzW
0RAsm1dqgsy3Pi3wb6zkg6brlAX
CKKl47RL6Xx3wcJwUZoc4I4Q6vDXoJwPIX
ehyjgJQVuzRsMw4hGCZCFt8G8aX
flWNkLgwFCVUss9lSvHtm6jd2uXwpfD9x7P5B2qEGscla3lFWGUJetPXA9m6wk3WWbX
G4oCNoYIZBsIpJi1Ozzh6OEdpXO85hFQiIBmttZ7MVDMFIva0rJCSjtlMo0hGinqbeX
wh0hP0AYa7OdJIxtQL7DYxIank0EUuTNZWcg7nw8TwbKZHzptgQ3bZshio7FqmvvYhX
K5k337ZKAqMLxrhly26pg6dbUdyWZNjx8kkWO6I5ftkBhJNaHeyXlpWXmO0cFPib9lEJGXqHJ1MYHhzrNnkX
TbQYH2m7T8Pto7bMFukTWA6O1xKoZnyWmX
cyxPxX9Y7SIoxbTaEww1SFfObAdpQYonbMuINNTQroxoMyickzeZEJXLFqSDCx6HHoX
aaOpbR5EEpnFX422XLvfRPvrFqfg1fW4sX
rG0DEwGFKtUx5OV0OrClqXX11KZS8tjPzX
F5b05qCogudTIzISYnmBo97zzryelZDXTPT8HRVgagHrlo7pHbBmUgHtihNByxbEg21v6F2iWkr80SQvkh0Y
iqcRb9XVRXfQ4aQzmo7FBmwAK4Y
vVWMd7cbVMp9SkSrKhmhIcjQjHWmMZ1ODLMeJhnX64NgQmwHzMESP3YjIaHFbXWfk9Y
p6BedomMMufcNe1xtIzvOB2c5CY
RSJDoH7422iSFyqlTT58mKKdlGTI89O3MVPcwWRL81sZkgTX4xU9s2SAThbkpKg3xHfKyJY7qtUE5KUNcFPY
zpm0JwTRqzcAo4ym4qNZtVlhtKILv8IRovArNiy0FtKoCz6rb46Ru3xHu73RKCWtnoY
fpudzoyfEcVcM4nVMpnOX9WGtzHwUHJestOoJD8kWPAcvoYeURG1qhUls6guPfn1OSmpgXMERcS67Gp8NtpY
aj4duB43Hr41x2ZHxD4RhFSNWkjDCytsuY
utBsG888W1UsD4jHIWpt8BP0xOZ
AQPnUY4vffWPdVBQaEd4LgK89i4l6MjCAI5vQvecZCJgpup1RVcU3mMymFlcGsuh7jNh9izoojPH04dkm8SZ
siiVRJttPEZrtvIb1pvZvTGjBgZ
UUJ4FydfPzUvIe6hJ9qPKH4qOwZ
Dispose__Instance__
Create__Instance__
value__
XleOzj8LAY9FYnciVZnKu9TWyk6pU1ulUqvEw3ikrwztxaKEzyNf8RSnMUw7UzJLLaCuIv6AfIeVB6kf5g3a
3CdTvIGpEdCiaGj9zite9V2yoEa
9rB3oYu9OHDSbAINne6Melhhrk4LNxZVIa
6GQmEdwibMO3G2esaLmglQ4Nui1C2jH2Ya
OfpQIVC9zHav7hLQ1OrYyuYXpgfoaMwrfa
ProjectData
CZB8YkuehSYfDk7mMPgxrERsXamIO5Uu8b
dVhvvhcU3jbBKJdvt5FtjZkp6Bb
TQwvmqIqFb5iJbprDu4OY3EYq6muya7SBb
Wp5p487bgNd1zvy3DlEKWADoLKb
m1GdkKVerbYIvHR0fwcQoaCU1Ob
E0EHM3bLhOHMJeN7sfYecVvJZQb
KIFB5OpkbaMK4Y593SEVd14m7Rb
mscorlib
4TPKIRwy1NP0XfziUdBuShSWfnb
JAiezXWAGlJVUdrzheRYQCYMOrb
0z9vl6vYsFt5cWZMCP66gryOb2VnrRDJP7U2qSJLt8q0PkjAwJhsdJFCAVQdO5EHBsb
84vdz345CvPbpptK2fUUBSSQDDdoEY25xb
oVytcQRw7C8jaK29fVJslbC3XVSrciWoEv7fMByMifs48tVgRIqY2k8LY8gf5roShi6CrB5M5mOApvZJTx2c
22JC9Vd0m99KRiPxlZUkOsKoAgQex8F57c
Ij7b3TR6lc8n6b0Yh1b6OsoAQRqojwlALThJEb9KkFrVU8IxU3FbeNX3PRJW4F5smXl1NROAKUpqzh2Ymc7c
dvWB8hvT3OOGmu9klK85mUapZF5EFsw8Uq9bF8geFQfAbR0MaB8v7tE88H6nzvFuq9c
HOjyvmdiheoMIiaQ6S6Y40FcAGc
NkWiK5agTUYYqRp0KS1XbAmboEeCenUuew59YhvpoURSQwTRZMCLQ1EUuQW8UG1i8AqAniIuWpTwJhcVjSLc
AiwcTTezpluCLcbj0o5HM7tr6ic
System.Collections.Generic
Microsoft.VisualBasic
kYtJelUWDFaGxUTNl1OLCITJYnc
LowLevelKeyboardProc
mmvTEXicw5BDHjiHBzgr609XKBd
mpqNnj7rdKa6ZRCrRsWzw1CDEaH3gjhiHd
GetWindowThreadProcessId
GetProcessById
ETxs8K9iY4ApIktzrk8gvwr0eS8DIDAnQd
tvihHahhwG6c5tcURenRZlN7HGRj3wRGUrUQ2l1OF6I9dK7Udyo2uD5gmCvv7Ea3pSd
Thread
AMI3XU84rA0YPegBMBWIAvwe4GjfK5AkvqDk6O0FgGU6v6kyOvGrjJVPk7M610lr9dd
RijndaelManaged
get_Elapsed
EndSend
BeginSend
Append
RegistryValueKind
UBound
set_Method
CompareMethod
TargetMethod
jek1WUQa669vd8llhVflTssKr5CCnv5UyNrexUiIV23fVeKmj4GO2plQgcvd13q1MwJImzEawdWzAv3Szeqd
pSV2sBhZyHJfrM9dPFL8tcKot9yXcaYt9e
05fviDZ8MFhI0E4bIUDSdhcQBSRaWdT7Cy2cSA7AK6bsiYOsQb9qJiqLUmjxc5XL7KcLIpm4TmCOOqxBtiDe
uiWZtPpIv2nW4OHqVg6Pz568o8wQMz76vcGuvB9pTlpJTrGtqg8usLTKDf9QgNyOqKe
JRbYvWmjIAnnXEKFRYT8s6goqIoPcU4xZqHnwUREDRTmIG0CARNNy7QjoypwDRTWFKU37Jw2fSpjo7Xe5sNe
qEX5vhyvmPAI77tOXWDpaUcFLIKzLvidvvC6soov0dZwFlJmsuWwppP0ZsBtxnpTg1ZRc0O8H8z95YBkDtQe
3z8Q4UvaiJzZuj36W2gCnL1rtf2xbxpaNAGg6aC6l2uHbK5oeaTCDYU3h1N5mdp1s4hMQJ5xh57d0BbkvLUe
4q1ytZG7PJrPowqhc2peJKbMDnqu2QM9C1z6oKeD2WVj5exJJs6mjW2MpOykqiUxF7wIYasMzpB8oxHaoHXe
Replace
IsNullOrWhiteSpace
CreateInstance
get_GetInstance
instance
GetHashCode
set_Mode
FileMode
EnterDebugMode
CompressionMode
CipherMode
SelectMode
FromImage
DrawImage
get_Message
EndInvoke
BeginInvoke
Enumerable
IDisposable
GetModuleHandle
RuntimeTypeHandle
GetTypeFromHandle
EventWaitHandle
Rectangle
DownloadFile
IsInRole
WindowsBuiltInRole
get_MainWindowTitle
get_MainModule
ProcessModule
AppWinStyle
set_WindowStyle
ProcessWindowStyle
get_Name
get_FileName
set_FileName
GetTempFileName
GetFileName
get_MachineName
get_OSFullName
get_UserName
get_ProcessName
DateTime
get_LastWriteTime
dwTime
WaitOne
WriteLine
get_NewLine
Combine
2MIVHcbOhWyjZAVuiZmQS2VDOcZh8LPew7UnVlTcFVBjYrBqeIEQHf9nz06jjkEEape
ChangeType
CheckForSyncLockOnValueType
get_DriveType
SecurityProtocolType
GetType
SocketType
DdbJwc4RQfxYc8Bz02IDV6yIjEqMGITQhWkUUkeNrrB5RsK3bk4zytpVCb0dHyeuWre
System.Core
MethodBase
ApplicationBase
HttpWebResponse
GetResponse
Dispose
Create
MulticastDelegate
DelegateAsyncState
GetKeyboardState
EditorBrowsableState
SetThreadExecutionState
GetKeyState
Delete
ThreadStaticAttribute
STAThreadAttribute
CompilerGeneratedAttribute
GuidAttribute
HelpKeywordAttribute
GeneratedCodeAttribute
EditorBrowsableAttribute
ComVisibleAttribute
AssemblyTitleAttribute
StandardModuleAttribute
HideModuleNameAttribute
DebuggerStepThroughAttribute
AssemblyTrademarkAttribute
DebuggerHiddenAttribute
AssemblyFileVersionAttribute
MyGroupCollectionAttribute
AssemblyDescriptionAttribute
CompilationRelaxationsAttribute
AssemblyProductAttribute
AssemblyCopyrightAttribute
DebuggerDisplayAttribute
AssemblyCompanyAttribute
RuntimeCompatibilityAttribute
set_UseShellExecute
WriteByte
m_ThreadStaticValue
DeleteValue
GetObjectValue
GetValue
SetValue
set_Expect100Continue
EndReceive
BeginReceive
new.exe
cbSize
get_TotalSize
set_SendBufferSize
set_ReceiveBufferSize
GMbMx6MOokOuvlSy8zRkhxslJHu7iI4k72fTBwf3OERDpmRhk2kWURIZSY0IbxpM4hvOyrlBDvEHMirdDs3f
V63C6wucwZk3GuQQcNIZP6E61If
LElvS4Yz6EJ2TaNm9K23uYaJAmlwTjMJo4qIiU2yidKprPnacI7yilFO3wnj7GVL2Nf
SizeOf
BCRn1KjINWFj7EbM4uhDjrgtwx9HSkRjkf
5xgNNTmdSAuHeDE3sbVZeyYJeDtPY9tug8GvmcHtMndm5NeXQFWLv462yWF7J9XVEpf
qFpzuP9LqOyQvopne0xmTSRLoG35sPb4sf
CDQTnnf7JS1BuhtjZaT1yZu1CceyxWxyUZGDfnUHKk3csGC6emj2i8ufa5NarbNIbkVi9nTgvf5Uy74U6azf
bPzpCkF00uZjrzMgikmMjjs9a2g
GqFGZR8sNzAbNcHQMY4l7ZkM33g
JCYwtYMwZJZdkLwZsJwL65kMYjsHYflkUuYhQ76rVdjv5qApiFwdJKIn5iUgeQmJh3g
ZNwneAC3UeNC445drqeG1Rn1rB0vph6Fel50GDH04V9Ee1gMC82ufoNYFzPexL0sl3g
bLe0wrk5HgUIy1OvSgOj6mHpzPqRaS1TAOASbhsvawrTNGbxecnccnLUkfsGz5qu2XtP87opRrBoxX5HE9Ig
4KSna2a4MuoyUgCIdXxuDWCyQMg
tnXVyjAcTipwqgW0FDr281ARTeTwLBiyUNYCBef2yG5xtXeB4dCmxvby1ceBkZ91lQg
b61ahN3vB7nLWPEgnEQvwFLBHXg
FvWuf1qoPWbNaLddTfaidmfYXuW7cVVIcg
get_Jpeg
MjzPpLWqVGOnEdDGuPno5iwhmgg
fBfFlnuMrIveZUQcmiAshwXmkdc81Yxylg
System.Threading
add_SessionEnding
NewLateBinding
Encoding
System.Drawing.Imaging
FromBase64String
CompareString
ToString
GetString
Substring
System.Drawing
ToLong
set_ErrorDialog
Jo1qad06LzCIMTlnmdvdgaY9PPXXYkpGYUjwaLqPHsXHMIJt7O9OgwEeCIwHpHZte4VCXVjXkPvaVio2hKpg
u68676HWuMnZ33NlViOBAW5TQWpVlQ4ZtAvdo1z5veRDs7nR1H5m7b3aDypb8JDLwH4pE6mlh6XzaetTipsg
mTKOtFx0XlQyBgl8ke25IWCBtpLNmgUH6h
F16I5cvGN6MPzuTcbcNRreQYaUJL4wRf9QJuAguJfqRvn6WRlO4V4YC7teRxxbfSt8h
z3Cg8yHkx2rDUCyxG3H6sbsRzgkBIJ6WoFm8NtszmgEmhJAtwVgknNqPedouBPmO6Ah
39syVnH28Y9fQLUZOQ80pzUK2GasoYyyGh
Stopwatch
auhghbAYkVzzaZixXC7XbglKGLAjB333eh
0l5gQbTgYOFEfItDTxMudSxWvWDAd4rivyYNWhReEZ6hZAhciiAjmaXskhREQ0USPnh
ComputeHash
get_ExecutablePath
GetTempPath
get_StartupPath
GetFolderPath
get_Width
get_Length
EndsWith
StartsWith
xPusBh1l610tsgiEjJGSuugpx5Jdx1jazuPaQI0LqZrs1RAu3mqBmKiBtIh25DOAM0i
ZzZF1NJbFJ5MdHSWIvDqRwKIShmcT6ZCsWShPBwpRB5dUYg7kL45pgiuAw8mwFggj9i
c2qgAVokoXZJCW2Vfl5Q5lOxRAi
0lJ2jYUGZIKHf5xIrxw5kD4EQMi
Cx5nSAFeiC23DrDjNhVKMs1bzuVGMHflOi
iBMHFmWqUAKQjq6iOq8AAXZTcSi
7V0M9hnduhPnmQumGNJrJRDDvii
mXkhaCQJjUYmU6iqDysUmKisxvGagmUfli
v1IIeGDZiZSSTBC30UOo3j6oPl6u5NW5ni
kwfFD2p1luUBv23sJdmINOuEbLGDMN14si
YbLayE4wy9SWpshK3EYUNhCb9bUQcpqPyEOgFHZekU1RuEAe6qAFFZc4BOO1toALE0p1qGPG62IE750bYXsi
swZBRubRU6tSo4iokeJ2nuroMGXnfB2o1F2IXwZjoweK5ROvzzTgsw6gMuHfzy0vL2j
rlfaMCUF3fnu51wJ8UOp4XxuxHj
08IA0yDOeKkamfXMw9sAKZzZ8Mj
PXQSrKGsKyfwXzirIHJeFn1ymOVRkIkqbj
2FGXILC9WUOdKutoTIZz9R4EDcj
mQulUZix6wV7dvjRar37twvcjuj
bO9QaFZl7qvbGqoar69jf0LdiPFmMt4l3UFgtO92M3SUB4a5OTa1KD6TKjtjlF8c0NbAwMIbS27OZsbDBvuj
z4G1k4sDKhPDbrJz1JVhfcEIEvFPXg8avj
G2Eo2AK6eeNWoEAISIJdlCCkeBk
Ri9BEEm0Nl9APM4SPavyjmr5mXzghj5xFk
IF1AnirCnGXWHn1QvagEWxhBDXk
get_ServicePack
AsyncCallback
DelegateCallback
TimerCallback
WaitCallback
RegistryKeyPermissionCheck
TransformFinalBlock
saNyRqfeAC9g5XXZ9gzcHMaAU4wVZzK5QCydYSqqrzlpLFV5pNRvWMsevcqtlMaBhdk
aMiadmyxRLkBvCOLUGD8onwnHVE42OoktPZ2706NKtLZGgto5Ji0tRm47ssYSzOcPxnpHnlawkJdaC57dJok
9AkPU2B7BvsjaJwd3lEfI0YCYpYjpDmWTX3WxrXfrBidnwNR4ulHqol7C21qzyzQaz3eiCRTDQQ7wY8SIXrk
wZwl5NFrmw6oSpoaZ55gTWUemy4gpnpHeh9zbcCMI0S2pbdzlUwV8erllcD1hZ4oxAl
KvKASVcf0P8tlo0qyxWXzH9kVqSZKJ7fzLHA7S06C2UpanjesjvnxLN3DwEH2zVgvQlxtMeEBtEzFCsX2rFl
56nUOgpiu4I4C6cuaAF8COhmcGl
UMKkyzoPcNgwISkwpPBTsZROjAUcAcYjQl
trAxzhDxEY7uVOAsDybJyCzN5xxLDzfKUl
RtlSetProcessIsCritical
Marshal
System.Security.Principal
WindowsPrincipal
ConditionalCompareObjectEqual
System.ComponentModel
LateCall
kernel32.dll
avicap32.dll
user32.dll
NTdll.dll
W7dTJn2GFkLFWBlZTV5sUGT9ZmuOuK8PMvFXtWeJve10GTENXs0WqoP1oEAE7u1cPml
set_SecurityProtocol
ThreadPool
ObjectFlowControl
aL847PpWQCn6s1CrOKfKnxfEJdkGhWXo29o9gtC4xyCd6ZEsKFBwyyZMsChLwkR8NEvnZlbA2EzfstwgZopl
G3UyrKft1lUAaG1rW0Q9edVivoSR3xwUxl
VxT6twdwpkgzFPcGwJ4QWrmXOgNx4lSA5m
6VyZMwe820SnsN4SWJKFTKHJ9PtwlhzStrbhKTcwc1xZgh05iaplymThwqQ8kj8YL5m
PNl4iksFUJJVeKzU7TZ1e2lvwH5gA2xmiYBOUMyxOKKJxiJs9j6hVnovUIETPBUSyo379KT1oTaWcu8eN3Om
E88ZAETKExZAKkqyCfYzCZYlLT3TEzeC8LumMpZf3oTpZTCa7YBPMPU9Okp7nxzwFmhA2JqgF1RApqVdMDXm
FileStream
GZipStream
MemoryStream
lParam
wParam
get_Item
QueueUserWorkItem
get_Is64BitOperatingSystem
SymmetricAlgorithm
HashAlgorithm
8h3KTnPhkNUViT51IBcnjgSqRnm
Random
5OeFiCw8gHwrHhZpllbvGEQxDrm
7HLmbH5GcSvZpbtZvKDxLWvUC7FO20FTdF9WDCNMvEfYSZ9fQqsg0Jyh5wn3cjCzmrm
ICryptoTransform
tVSEGcO8bUlk3HSs8Q2fOawCkwm
NKRGyxiCncQZBYe6EQv7QCTEgSyZMs7lsFHoPgZoizOT4lFPlPzqvLyms8P6zxVEyAn
e5Z23e86hRE63KyCzEzMLgCXMdpKnh1sJQSUrfSoJHFBjPe2Hj2NQGuOpt7E14nQCFn
UDs1iOlA2pRd1O9zmmATjD2VQMBJT0Lt4r8t9DNV0GAs9WbVhAXBY3PcsRbIiZtdcan
ToBoolean
op_GreaterThan
TimeSpan
Xi1j1iH4rJTwvPh0RG2VS4uSGen
CopyFromScreen
get_PrimaryScreen
System.ComponentModel.Design
AppDomain
get_CurrentDomain
hO6s3zZIM6mNvEk5ovC640Scrin
GetExtension
GetFileNameWithoutExtension
get_OSVersion
System.IO.Compression
Application
Information
CopyPixelOperation
Interaction
System.Reflection
ManagementObjectCollection
Exception
Environ
YrIExXHqqapqyZMnez6L8VObUrn
SocketShutdown
Oftj2lJy6XS9Vq7sKszKqiDIZzn
X7liWftpflGyzGjdrTHISNxK76o
UVw5AVLkqAlbRnMjOTEBsIq9EEcvkDOeVXffTeIm1bErW8Kk3tYzBcrXWUNGJ4qW09o
q529zJxaXgoncmSI1LQFZiq93w1FFRiNJTctvgQhZzJdnVu7XJvREBwuPmIT3eMonl9LCe3iy2VbQCvxs8Go
D45rDV5LkINTMmKPwUtuwDxTqLo
fhXh63Oi5W4zwX2SJhtyBCdPwkga9txyQmyGT7zd6ky71fdgbRgIyauVGEuouLFcXbDXAVGYdgD9ayKc6jTo
bqW0v6yxE9M0x84M0hMwSFaHOt48xk6oco
MethodInfo
FileInfo
DriveInfo
FileSystemInfo
MemberInfo
ParameterInfo
ComputerInfo
ProcessStartInfo
GetLastInputInfo
DirectoryInfo
VdPRgIm1wqVYSpPogP1aDnOrcD1wSJF7go
IPRGB7RcARDgxTcxUOidwJEb89p
n0fu0wIMXZHlDVqpaRlqMXTfwJkn5VFgNi3BtJ4SOZgrM8KqOwCchIhJv1JVDs6VTDQDVsFWmMg096PJigIp
X5Tkd1DP96KKRo3j91pt3EtmXGW3bc2NMQg7MiuCpqKYRVpku2Ks8D2LjNjn1FZktY2y0L3HxzaaSTnELHZp
Bitmap
9YNOqwtAHstYH5M4lUVyGLJPoqp
OGlq5YnlHlSEVrPHDCyEAhEuj86L2GP29q
kx64NpeacKXB8IY1Qm8v3siupHq
7kZY2WnV4d0o0zeCf9ieL0uiTEyZ039lT5ZhCiGXwe1mJP89KXWhxJNW2BYBCBaIJTq
W1UhtmQ588OfIPumBrw2nVwwlhv7pjnlYq
poQWgznRVJyOXWK4SLu3mTmmR3I4PWVcgUIkGvYarb5TOARH3Kz2vCAgdc5OAj4m8HjHXpoDAdUpin5A4Fcq
SjoZGee8wtlCZxFmqsMtwFnK6z3uqf37wo3T6IYWhvFKLB2uVuMV8SzFRDly7TwEfWgqu6HhQmdB6Degy0kq
System.Linq
PQwIqIlcnP1hsddzzylJc6kcO5Kg4Tv9eEFut8ySirXmSPEZl705I1dZKAVHIEZJVsYDQp5AefaNxsWKZltq
09yMauyXrOp514pOoQDGtIdxfjWNKQlyNr
v1vFqBUW1zdgwMmzjHBIME57Q6rBm20U4ipAoeOqTvKad4capU8o9bAnTUc48Dy4VQr
CtzXzivPQQs93JgwvFxkZRv9NYnonRwJKb0ygeW7p4XDT5teVfClwdcUFcWYa4d96V5PVBcYsrQlq6M2x7Wr
uCN1YFNyJZBSP6XjFTPZEEft85AV0UiD718n8zfhgVzYHlTxS17ZvxhdpT3fGUSJSWr
MD5CryptoServiceProvider
StringBuilder
SpecialFolder
ServicePointManager
ToUInteger
ToInteger
ManagementObjectSearcher
SessionEndingEventHandler
System.CodeDom.Compiler
ToUpper
get_CurrentUser
StreamWriter
TextWriter
BitConverter
ServerComputer
ToLower
H8S1eFeOZq486BN362Ja94mduOHccasmXjDnCx7NGcBsfE357xlQvnoUYxpY9DFajUAEc0JFvo89szGfEDlr
CreateProjectError
ClearProjectError
SetProjectError
ManagementObjectEnumerator
GetEnumerator
Activator
.cctor
Monitor
CreateDecryptor
CreateEncryptor
HW1bdVU7g6aYTMYQnJjy2tw9TJp5wVJipr
IntPtr
GOa2sCFzgbZTt55R22XtIURNJR05qCyUKNzVKlDBFqwD4iqsiui9eqKxs8Lv1sej7Yph9u13vfsePTgwncur
ZiCC2IIJAIFFOCVOffJc4qxPKMEXAimS2mkxD09lq3gmjL7ioBWe3xZJtp4Xsqp1Myr
ElvFbuNiYnuxT0cxJ2Wwl8VSqCxKsR0O6s
KX9ubEn3WoirI8lvv3oYb0h7hDs
RIQfQWiGFVsQ4bDETkHxV11NEfaE1BGfYs
iAi3LjwsYP7ZvhZYaDhD0ub0Xh65iXqabs
Graphics
System.Diagnostics
FromSeconds
get_Bounds
GetMethods
Microsoft.VisualBasic.Devices
MyWebServices
Microsoft.VisualBasic.ApplicationServices
System.Runtime.InteropServices
Microsoft.VisualBasic.CompilerServices
System.Runtime.CompilerServices
Microsoft.VisualBasic.MyServices
GetDirectories
ExpandEnvironmentVariables
GetFiles
GetTypes
GetProcesses
FileAttributes
SetAttributes
ReadAllBytes
WriteAllBytes
GetBytes
GetDrives
SocketFlags
Strings
SessionEndingEventArgs
Equals
System.Windows.Forms
gtSUpLjWVRW2Fzzhlk5lqkw0w9evJZe4rl5B1BSCNazSxyA0qyOLu9PdlqP5Zvg7Vns
Contains
Conversions
get_Chars
RuntimeHelpers
GetParameters
Operators
GetCurrentProcess
System.Net.Sockets
set_Arguments
SystemEvents
Exists
VaMucJfFt2YKFBiwbr5kv3L6xd2fsZhuvs
aUAIY1q2nj89AV6bXdXjqdVizRULN7KI6lPgLaKCfiY4EZA5MqLEjTCtgJfWPxkG25t
Yb2KTCuK14De9PpEJZze5Jt8H5t
XY5W9CGTpw0hmTM3M0sE6IGBAom06OYAiz0ilsNqs21WJ2HZVO53ILb66YO0qoEB87c0owuDqDqnFpY18B6t
H4KqixaOASGkeYpr8ynAAlP2W9t
PxPhzx2xoWuzb2OKp6Sji7iikR7LdQpSBt
mm7jAI1FzmA60h7jjgzXwjArxkrVEyLHUdyc8y82HQAkznTLOFBiot7Sw3kngcNHXEt
gcNT0vGKmHCCD0Y9JtEQqvjOJOt
1Ltdjq96eMdwe3Pi11meH7muHQQ37G37HHzz3vJPzxNZpmzBOIlzrDO8UNw7tWZPVOt
X6t0oh9whB4i8850BmWozwCvxVrCHP0rtr5uc979AWnrCGI6dA9uP8wTxZPVjdXd1dty68LHjvv2SjqCc0Tt
8tUOwgKm6aDEN7mx99dmtssf0TAloYW7at
Concat
ImageFormat
PixelFormat
AddObject
ManagementBaseObject
CreateObject
ConcatenateObject
SubtractObject
TargetObject
NotObject
Collect
Connect
set_AllowAutoRedirect
LateGet
System.Net
Socket
get_Height
op_Explicit
set_DefaultConnectionLimit
GraphicsUnit
WaitForExit
k3DWlV8QuBmRhqQr516RHlpK2MZTJteRksjz61CyZ18nXS0V8sAFYGYi4tyskpds78rp6Uts8KV7egyc7pjt
get_Default
IAsyncResult
DelegateAsyncResult
DialogResult
set_UserAgent
WebClient
System.Management
Environment
get_Current
GetCurrent
ManualResetEvent
get_EntryPoint
get_TickCount
get_ProcessorCount
GetPathRoot
C2HeGrjFt8ZwKQXGcegIVbvAmuvoPUCyRIcPNORG1aOmst0HYO2BAmGsEFxwIduzCqt
ParameterizedThreadStart
Restart
Convert
$VB$Local_Port
HttpWebRequest
$VB$Local_Host
set_Timeout
GetKeyboardLayout
RVejGkmO5CjCFpRhjNgQh1PK9SyuLdYZq9OwSz2yCp8IyzNDwoWxysF8madGopCSdxt
MoveNext
System.Text
ReadAllText
GetWindowText
asROWplgyZHPlYkZUXil7CojvJDkay0aGA1nkEL7QlN8Vj4huIiRWAcZ2cF6aU8bH1u
y5noFdo6B30QP8YQQ8B00prT44u
Blbl8FxQ2a4ld1mAAZvGxAGOOBu
OYAtcGmsbwdpAbLfkLznqmHfTcu
IZHAjUhlKmzcCf4wRybziYolx7CNTDQA8dSycDykarz8D6GglG3qnEf62iiNBsuzIeu
GZJuEPgaLckKhOFA6Dmi2DW2DwzgEXkByh9vpdIpYUO8QE7lwd0NtNsCou6pjoouRDJPOa1mmXv21BJNHVmu
TgjPmfybtV2w5mFYXg56TE0EJZprfjfKSUZPpoyICTZXPfnJB5bcn8cpV20hg4ezGk7Y8HAimnABG4YMKBtu
3PjMmZ6hnD2s2qqMYbu1lD7qh5PA32kTCVknqkIRjxayh8l4uAgAwJwNNZh4i8AWP6v
2X7VCcoi9V2qooi86KiqM1mqVav
N8wvwjUv5Pq1RZo2fD85g7nZK1TX9RESRPXWvLDaynGy5NxjcwOaT8pvKZqpzHFkAPSJSazrrByBAHp2LUjv
E8Rhp5Dz6xfFjmiZSQwV3PSMGdvS4WgmZp5HxtmGL8ZRQHKjASbLxlyVF2laee0RRuH3aVOzvSk1NxuG8dew
Rz0mUvCNaA38cgZkn3rfopTYkfw
7NvOZYA6I16ocxatvpcMXIOGKqRvZtCDVVN6qDnYhtpGznwJqqcLl49yMg0pIAzqiborHUhlANOaCztdJLhw
fO5OXGsxEwXE5IiKTpnCmZAfgRWDO1M2GeE2GUH6IilNdhzFurRlrkumHRrg6fLyUmw
GetForegroundWindow
set_CreateNoWindow
vpE1OsV4FWqnFgRQ1XwoWUft5igUAPdhfDJ3Z2eQimYx0wmiCepvbIJRdOlfzqc5nAptvQnduV7AQFyq8Lww
9iD2cmVDunDHE7hYLPui3gvRrvINAZEh6x
ToUnicodeEx
UnhookWindowsHookEx
SetWindowsHookEx
CallNextHookEx
ZNsfkon51vwjtaM3LfYPgLiySQx
LateSetComplex
kpEp1uNbqq5LlPnKyobefQoR1r5Mkh2ACbVt8dZmjCoqJdt2OLDGbaXYEhxFp8OQCna1buz8mAlDcCsk6Ylx
MessageBox
TlFlo0jcoJLO4k9GOxI8PHRpbzx
uOp4i18EJPp2xYxiZuyVGmtrvn22qK0Cd6CVzkpssZMKZO09ViE6Ey1OTMX1dKQsd0y
akU767DxSNa16NQAgkXXRvd9ncLyNjLQ2y
oPc5yjrGEIiUd7VJDWtQSuMMfgTfIpBTeEbstQuT2USLq7vOjVj6MtCgmHdYNIpaG5y
P7djcKo71KlKnbemKCjr3SLtHIy
GQBlXBvgJrzGbQiTjGiQ8O6uKvhnDjU5Ly
MXc4cvJDSJHR3qZv5EO2Xoy6mbg6a8DNLy
NQlgnvECrEuRWqozVMbiOhn9mgwlgaGFTy
jTDbWZV9UH8kx9JMgWNKF0P9gUy
ToArray
get_IsReady
set_Key
CreateSubKey
OpenSubKey
MapVirtualKey
RegistryKey
System.Security.Cryptography
21M7zjclsVkGOUaOJlbJ3viakjy
Assembly
AddressFamily
get_SystemDirectory
get_Registry
op_Equality
WindowsIdentity
IsNullOrEmpty
vlaDinT96bP4ojwIdaKE8zxlhJscUm3ovfLVIXADM3rTQFxRiAkhBEpIJJV4MH7BDqjWh7bihd3DTpSMw6wy
M4jSfkBmIgnQNacEpS6UcdoAaxy
RegistryProxy
cA1AY3KEDjO49SFfRRGINiFLpj4AG87t1z
TJ4wyUA3k9vj1mP7fv3vDL2eyEJV0kmrUz
wbySCvIpwq40wkscW0bXNva6raz
QQihI38pJNuVpyW4s5bjhwtXpSKRUDjirz
AnyDesk Software GmbH
AnyDesk
WrapNonExceptionThrows
(C) 2022 AnyDesk Software GmbH
$3678e452-95bc-4a10-aa85-94e19dfc3afb
8.0.4.0
MyTemplate
14.0.0.0
My.Computer
My.Application
My.User
My.WebServices
4System.Web.Services.Protocols.SoapHttpClientProtocol
Create__Instance__
Dispose__Instance__
<generated method>
<generated method>
_CorExeMain
mscoree.dll
<?xml version="1.0" encoding="UTF-8" standalone="yes"?>
<assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0">
<assemblyIdentity version="1.0.0.0" name="MyApplication.app"/>
<trustInfo xmlns="urn:schemas-microsoft-com:asm.v2">
<security>
<requestedPrivileges xmlns="urn:schemas-microsoft-com:asm.v3">
<requestedExecutionLevel level="asInvoker" uiAccess="false"/>
</requestedPrivileges>
</security>
</trustInfo>
</assembly>
zADOMNedSUtlL4dWuc8W8Rlg4paaQNrdKyDJGftTfPieV3ibX7u5mawCfL025WF6eVhF0TZuZgBgvqBALSX8
tID08hOtkPCbtoshae0SUJHCKH3UfEBPg7nEPQUY0X5rsdDcJpEM94sfAXNzAkXHwGEjP6cV8Kv8bIw4w6RJ
Zrmg6VVLDc8I2oa52eG3ORLrxpEdPU04SeWVnSUlDiCKO8wD5KqMACmoNRCunB5o5wIXXHYRDPjQWXqu1Ztc
Mewo5QKCVrwbabHZZfGNmqjXqXNYXEQP5SWFtm1LQp60SssDxyadKfujiog53NxA94v9H2VVQIWV6ORJCqsf
TgvZ3IDxysXstkmQtK7N171OmmzMAiqXcocf25ilFydasgEpUYVA0ZHCdDPj7K6AnciRV7T6pSLLu45RNM68
WRYVJ2hJHnZsIXxTNKHn5PHKZEO0plmtSYuveKBMfkxaEOXEFNfgDTg3Hf0n6aiyn3sCAZaxXJQ0AYnEzdIm
YqSvkmwKxOgt4VovaBDWedNE5GseWqOoBC15Knd90PKXgvJidTx4mB3mSQ2gdUKBLzL0o3kDvrh8eO3ullMx
1QDDyZGniVvJpd0/n2dATwrZFbHCS/ex4pmF1O8yvmg=
ljkz4kJNENqRcUirl4YvKg==
kV+oKBgwwIg+Yqrs/jydOw==
fDL1Am+5NIOsS94347fSyg==
TBayTSFTSfNIpLEe0Vn1iw==
%AppData%
MvkZrMQ3iY1kCUsl
\Log.tmp
Zqz3RuBGeszJw99CvIuPHt4I8FtjgzATeRCKDuXf7RSm8TeSSEHijvTMm0ekYf4Rzhu49lfvz9tuO9e9dC6e
LR3I3zkxSZG0BZAVQebNBMnw8opgRz7hkyJAOX6nufB2toA90al0VRQRSyvPt6LpcYpok4vC28vopakjnFuq
schtasks.exe
/create /f /RL HIGHEST /sc minute /mo 1 /tn "
" /tr "
/create /f /sc minute /mo 1 /tn "
SOFTWARE\Microsoft\Windows\CurrentVersion\Run
WScript.Shell
CreateShortcut
TargetPath
WorkingDirectory
FzyNoVpmeVG1Q85G2ArXenyyiEhfqcOLzCEJ9yVPzKrizVe2YsbubwdJ7GIBZu4bfIQc5s5lb0cLkJ559jsD
JV20eZHJdNhTDon7hfYJLOisjr3pICvLua6lI7L7AJx7p23R8xlXaVqdvJMGXvj1PsOUjHDcdaZ00dsMXooo
U3YDUcNrLGVStb2Ga9PPEjsPpV9NyxsVRqDun1kwaf2xBrizIr2rUSOBMpqhapMf6s5Znu9O9tJZzU8mHVBW
7RPtbQG8MgbiK8GocIHXw0fy8ZWlVcSxtvPTfz6wYsAVKX7UB0lBFLhc0ipMzDZX0suAKzTnneRLvzloU3MQ
1bm3YuNRzcoBW78A4szbAye71C7w9mE1bdzOLTcYpTSTlH3oTYwGkriVAxdwQnuFKgE1xYNCCvZzudNA5Lpi
Microsoft
Service Pack
XWorm V3.1
dd/MM/yyy
\root\SecurityCenter2
Select * from AntivirusProduct
displayName
MjqqeFDEmf5wjwqwb5DwxY7heyDydVXGQJkePrOaHnTOzEAcvK57oam8RdO5bEx0J1MGKvxrkJ1GYGVRFfXi
zftiyQ7QQUA35bJgRcwjeXXeXUIVtETCmzMsPfuJUUGrIWKZjZIMdnfAl3sYbFwNNv53boYFVd4AWZFDLd2x
LRfz2Zr8rmNmDj2HYSRb6cb5bI4blVPWqp040i6jIEM7Pbv9ci2HQOltpgBOEDFpnehn3YAa2FRk6BwmxQvt
rWaD6u6fMNTnToETzJRidVrnAQcsmkyvWv2HXzUwLLaLTuJa7ResNRr6UPFtljusrhfdrhzQp0sGlNXRuhkE
S6PeurR1inmyYL1Dc51D0LDW9AL8bmVkd6mUJdPQM2DKB03QiGqzQKGVlGHJqxQsi5SfDe0WynDPAb9DNQGv
8mqj6qM7Av01G9c3k96JM4S20WPc3NT0E61Jn6uxGe2GFsrFeLYg2Evkn4M8OPMjdvh2EnnNEfECN4ozzcOj
IBP119otzcAHfuUzW7vIrcr9iBEbzxUDpnjo08ZUcutmhP7ASQeDxuUNwyFDL8SmzsheFIBUHbMi4vjHmRWS
p0mB9808ef7V8Td5uFR95yIH1rlZ1Vk0o0iqfHpXvyn1VKCOildfQw0Y0r2P8rmXe1y5GsW6fQSZXK0uvhr6
BMnKFby11Dy7XQrodAEMn5voSqtnwotR8uDY17GWz8zKvhWL7pHES0t1hCBxyalEyTCYcjJP7KvgLAEVYBK4
aZYydOCRS2EcxcaSs6PxTYrGxFQM1ajh14uqSPBoPaAXVTKCOMDdYiwhX3BpBQZvoDktqo63aSpEcWomwjH1
6Xz9kqwDiuIZA1Sv8hOIJOYBP3CtDrxhdQKA3PjxenUUNaDXFQS9SEqpCXJfmBPg5YFIkzk0vbMssi1ZULlH
2VK21ZEMRyqwGD4erml23TSstvOcv3eR0lGHVHJZb7Z0XJCcslyCrRgs2tnCliWOBJNLt3PAb2A0rgkBAlqF
Lox1yIpEtYzNnUdeEGWvM13fUXwIsBlwreNtffLOIyvnggGL9nzYjo7HLgp4M8XmGBfL45xJ860fPOkkFltx
nhE0Ld4Vzp9zkPMAOysHHZJIlBM0wfwVRHEvceLy7NOuYrzLcukutfOePYZ9QItBXReFy5cKPygiovMoJlCu
JBlpndeZ3wlMxEjtkqyENLvCpigZhy39DG4UBxEfBpHk4DkAKBVR0Xf4SaKERhKkwAu3VjBbMgkKXjl0SusT
2w1fQ0YsPWbpS5Ossbf8nx0qlGr69oerkMpizxDTG8GdNT0FHLfmOmShjjKoRPjMP7y1P1Zn5j6ZatxlXrOx
uninstall
update
Urlopen
Urlhide
PCShutdown
shutdown.exe /f /s /t 0
PCRestart
shutdown.exe /f /r /t 0
PCLogoff
shutdown.exe -L
StartDDos
StopDDos
StartReport
StopReport
plugin
sendPlugin
savePlugin
OfflineGet
MessageBox
Plugin
Invoke
RunRecovery
Recovery
RunOptions
injRun
UACFunc
ngrok+
Plugin Error!
ToLower
Open [
powershell.exe
-ExecutionPolicy Bypass -File "
4PANtv2RTMJL1ULQoNgJ4LJ7bIdTos9SCCk7aWHVJCvurfiSO1KYw6Dr16jAfaISkJhtNOhJTD6zP1T3qfAU
QqByOGvT5eTS8d2d5L8b7SUNXEh7WUviKsmCQXVz89yUquGxg9AKjCqnEZijqWPnGsYIlB8GQbqzTVglfukj
mQuVPURa96YCOyW7Atpsu04iVlCuQpQVyt9xKysr7a1moNOg2DY0tlHRTWKHNUcpK0srOiuzRXM5DjvrXi4g
oCAUzNdzl75zKjHmlCytFGbXPlgSUzwmt0GdK6VYrFMqv4PBrIjgEvi07gTNIriJu24TTdUVgOzRJYAuhAUO
Mc9j7llUBRzidcjxGD3MqHjIafB8XN2BZzmspFKb5gMEmVTpjC2yuCx06NDYzkKwrXPeOKHZovqZKk13X5YL
TA15GdsfIuLWwgVwGVmAJgt8iZ1
EygrwpPygQIYUwM6PENrhr74I7U
WUvLK7QmFE9EjqWu8pqDmeHSqAL
LxZDQJMKNULIyAXTOLqxpU4SkYy
uVWrX5OVrXj7p8aTHyh5DiCaPsq
kEYN9tJBGKbfdA2ZqRO9aGzaZDL
Frat3PCWtM2HmI9CYtuTOWux8df
JEPHOcps3EnjOA67UPMEmbeJm0C
EjEyUcXiQmgAki1pstq4Dis55V7
PCvTahOGVBIYWtUMKTIaHvO5twh
rH6eELV2PIt1V2kOl9YSS12sc07
POST / HTTP/1.1
Host:
Connection: keep-alive
Content-Type: application/x-www-form-urlencoded
User-Agent:
Content-length: 5235
schtasks
/delete /f /tn "
attrib -h -s
*.* /s /d
@echo off
timeout 3 > NUL
" /f /q
qlT57bY8fzDGhvbCQHkqdofR1Pj
Ly6sCWoBPGuQZxtCC8KTo4Y36c3
wscript.shell
Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced
ShowSuperHidden
windowstyle
cmd.exe
Arguments
/c start
&start
& exit
regread
HKEY_LOCAL_MACHINE\software\classes\
HKEY_LOCAL_MACHINE\software\classes\.
\defaulticon\
IconLocation
iconlocation
arguments
&start explorer
HKEY_LOCAL_MACHINE\software\classes\folder\defaulticon\
lnaUsAZc4efROQHtDwfrEdzRYzu
W5R5mhrbPmTfbxqvMquV3woeY4j
JQ802Zgt226eMowtC7DQQQH65ZJ
77yu0FjNUf7nvHLYyjSf0eiutdS
ToUpper
[SPACE]
Return
[ENTER]
Escape
LControlKey
[CTRL]
RControlKey
RShiftKey
[Shift]
LShiftKey
[Back]
Capital
[CAPSLOCK: OFF]
[CAPSLOCK: ON]
MainWindowTitle
ProcessName
C3XxMEHkbfkwZSAtX1DMWB5h2h2
o8LDDehPPNAmz3KHoVJgmdenca7
4sWWJZ0KbbSyoJTQpcZYHAh9Nlc
AIWS8lle1AYybidcYQ37V6jVeZt
xNmtlOaUrYrRqnicugG6WdWsFVd
GCrZMhq1xNhIcBM2dWkD30TaWT4
x3bWRgdmJ9NoKcUWnSy2WGa5qGR
tyzIThtKOedUflSZYWpm2eX9wbL
U8bfpCJm4nwyWBa2DRQGakByjmX
7HJmh9PmV3n1ETE8FrN1zdBzhLh
O3wn9kTIsD8VNdcndt5Nj2BjXly
j8l6GSj8Jcnwrj9SXwCueYl9tbJ
DaCQ9ydx5RprbpIgAavdgkgFKQE
BYa03m7M4M8isbUDZE0Wewha8es
U6EYuK9rdNoWKDz5VVgJkpB2O1T
8sTCMI4sSARL9hgs6n4k3IhhuYj
PVIpGZD0Wwh20U0zJzqilbe0mVE
3tr3GNIRMqQBWll4CburgG2TxMI
I0YpIi1WJA7VkMgOVZVwR4f0DQF
14vz6YhXhiWlMSaHLqVQEiZa1p0
a0tTGLlk0IQnvgiXDKjVTqBscn0
PKjXxKcNhpAdrF0LMaAVROxOK34
chGozUZCOUi4mGUyLNh9oIBqkwr
HZ0aWCVzyDtNA8zKu77NkhzM6un
c9Xr0ycAkCosJ1rGTlhgYLsCXFl
Bq39pjutFYWV2b9jhGNJ5Xdf5ws
OmXuhp40OXAwxQj2oJ1GS44sFeP
Software\
Mozilla/5.0 (Windows NT 6.1; Win64; x64; rv:66.0) Gecko/20100101 Firefox/66.0
Mozilla/5.0 (iPhone; CPU iPhone OS 11_4_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/11.0 Mobile/15E148 Safari/604.1
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36
abcdefghijklmnopqrstuvwxyz
Err HWID
ToArray
1lKO5o0fAWpNUo2r3Id311pLMhN
tJ4nWWyrzlup0ai8VNv80Y5Abja
en72COpJWY1EGQ8S13fVof50x46
G0V8XilNDnUUfdE7413XM0hnJqG
zGfLv1yyeVs0uSct1RItvl1UlR1
ZFNPhXmNiDYZGBWO54zaykIW6CJ
Tii9GEyVB3IRekZu6b67uYzULfr
KWWpo0Uo61HzjCBPghO5slQmlWy
tZvWVzJfGND7bPikXPoM51HiSeb
DRXd14BeeSeQaTaje4TQ71vc9sB
JtaluViQ7YLuHdacivjkhdNJUgW
Ode1DNALnYAxp4PBktgXfDjwDEy
WGft0D3XhxNghPy9Y8EPJEWjpCb
50k26VdWDywGic0l7ochjJ4hqUE
jr6EN3hdSSil3rDRirJ72ltiV8v
Pis6okDUCjRjmLRIazI9ortKvIC
KeHrD2yvrM8709WupWM5Sb3eG5S
wzW25CrPNAzr0WuVbvTobTP6KSS
SxKMDuSw1Ll8Zjbw4Kq4X46Kngh
HHzIPniBZwMtMT10DhIZli9awVn
Gi8d9jnFrtBVqn1UbpAMrxsCoUl
Icyx9KboH6D2IbCo1RJ16jz5MGI
VjR2wKfHsgxhEH4jw8rRDAIn0An
jNSjT5ZkK6qnmseiBhPRN9PzbvO
boObA63OOjDRCzBlYRznWdkwPYo
izuqpXIRBFEeSEBlfQr8dzn5zxa
abcdefghijklmnopqrstuvwxyz
VS_VERSION_INFO
VarFileInfo
Translation
StringFileInfo
000004b0
CompanyName
AnyDesk Software GmbH
FileDescription
AnyDesk
FileVersion
8.0.4.0
InternalName
new.exe
LegalCopyright
(C) 2022 AnyDesk Software GmbH
OriginalFilename
new.exe
ProductName
AnyDesk
ProductVersion
8.0.4.0
Assembly Version
8.0.4.0
Antivirus Signature
Bkav W32.AIDetectMalware.CS
Lionic Trojan.Win32.XWorm.4!c
Elastic malicious (high confidence)
MicroWorld-eScan Gen:Variant.Jalapeno.2302
CMC Clean
CAT-QuickHeal Clean
Skyhigh FE_Backdoor_MSIL_XWorm_1
ALYac Gen:Variant.Jalapeno.2302
Cylance Unsafe
Zillya Trojan.Agent.Win32.3926760
Sangfor Trojan.Win32.Save.a
CrowdStrike win/malicious_confidence_100% (W)
Alibaba Backdoor:MSIL/XWorm.64f25570
K7GW Trojan ( 005aa5f01 )
K7AntiVirus Trojan ( 005aa5f01 )
huorong Backdoor/MSIL.DDos.b
Baidu Clean
VirIT Trojan.Win32.MSIL_Heur.B
Paloalto generic.ml
Symantec Trojan.Nancrat
tehtris Clean
ESET-NOD32 a variant of MSIL/Agent.DWN
APEX Malicious
Avast Win32:RATX-gen [Trj]
Cynet Clean
Kaspersky HEUR:Backdoor.MSIL.Crysan.gen
BitDefender Gen:Variant.Jalapeno.2302
NANO-Antivirus Clean
ViRobot Trojan.Win.Z.Agent.76800.HE
Tencent Trojan.Msil.Xworm.16001415
Sophos Troj/Agent-BJXT
F-Secure Trojan.TR/Spy.Gen
DrWeb BackDoor.SiggenNET.71
VIPRE Gen:Variant.Jalapeno.2302
TrendMicro Backdoor.Win32.XWORM.YXEDVZ
McAfeeD Real Protect-LS!4C2A997FA266
Trapmine malicious.moderate.ml.score
CTX exe.trojan.msil
Emsisoft Gen:Variant.Jalapeno.2302 (B)
Ikarus Trojan.MSIL.Bladabindi
FireEye Generic.mg.4c2a997fa2661fbf
Jiangmin Backdoor.MSIL.gjld
Webroot Clean
Varist W32/MSIL_Agent.BUD.gen!Eldorado
Avira TR/Spy.Gen
Fortinet MSIL/Agent.DWN!tr
Antiy-AVL Clean
Kingsoft malware.kb.c.1000
Gridinsoft Ransom.Win32.Bladabindi.sa
Xcitium Malware@#gle9pnqu6khw
Arcabit Trojan.Jalapeno.D8FE
SUPERAntiSpyware Clean
ZoneAlarm HEUR:Backdoor.MSIL.Crysan.gen
Microsoft Trojan:MSIL/XWorm.C!MTB
Google Detected
AhnLab-V3 Backdoor/Win.AsyncRat.C5360693
Acronis Clean
McAfee FE_Backdoor_MSIL_XWorm_1
TACHYON Clean
VBA32 Backdoor.MSIL.XWorm.gen
Malwarebytes Backdoor.XWorm
Panda Trj/GdSda.A
Zoner Clean
TrendMicro-HouseCall Backdoor.Win32.XWORM.YXEDVZ
Rising Backdoor.njRAT!1.9E49 (CLASSIC)
Yandex Trojan.Agent!xZ4P6r1xCGg
SentinelOne Static AI - Malicious PE
MaxSecure Clean
GData MSIL.Backdoor.XWormRAT.A
AVG Win32:RATX-gen [Trj]
DeepInstinct MALICIOUS
alibabacloud Trojan[dropper]:MSIL/Bladabindi.AZ
No IRMA results available.