Static | ZeroBOX

PE Compile Time

2025-02-05 07:16:44

PE Imphash

f34d5f2d4577ed6d9ceec516c1f5a744

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00002000 0x00000d74 0x00000e00 5.31891308713
.rsrc 0x00004000 0x000005b6 0x00000600 4.10301354056
.reloc 0x00006000 0x0000000c 0x00000200 0.0815394123432

Resources

Name Offset Size Language Sub-language File type
RT_VERSION 0x000040a0 0x0000032c LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_MANIFEST 0x000043cc 0x000001ea LANG_NEUTRAL SUBLANG_NEUTRAL XML 1.0 document, UTF-8 Unicode (with BOM) text, with CRLF line terminators

Imports

Library mscoree.dll:
0x402000 _CorExeMain

!This program cannot be run in DOS mode.
`.rsrc
@.reloc
v4.0.30319
#Strings
Task`1
ToInt32
<Module>
System.IO
mscorlib
Mkdzzmltcmb
Qkunonsexxb
GetStreamAsync
GetMethod
Qhabzd
Invoke
IDisposable
RuntimeTypeHandle
GetTypeFromHandle
get_FullName
Dispose
CreateDelegate
GuidAttribute
DebuggableAttribute
ComVisibleAttribute
AssemblyTitleAttribute
AssemblyTrademarkAttribute
TargetFrameworkAttribute
AssemblyFileVersionAttribute
AssemblyConfigurationAttribute
AssemblyDescriptionAttribute
CompilationRelaxationsAttribute
AssemblyProductAttribute
AssemblyCopyrightAttribute
AssemblyCompanyAttribute
RuntimeCompatibilityAttribute
Qkunonsexxb.exe
System.Runtime.Versioning
String
Tfcognwj
Atgnvk
MemoryStream
System
AppDomain
get_CurrentDomain
Action
System.Reflection
Exception
CopyTo
MethodInfo
Zqwttqo
Olmccp
Rwkqftqdlp
System.Net.Http
Txpwuvpcr
Binder
ParameterModifier
System.Diagnostics
System.Runtime.InteropServices
System.Runtime.CompilerServices
DebuggingModes
GetTypes
EmptyTypes
BindingFlags
System.Threading.Tasks
Object
get_Result
HttpClient
Convert
Dcuutw
Dqhvxyw
ToArray
Assembly
op_Equality
op_Inequality
WrapNonExceptionThrows
Qkunonsexxb
Copyright
2020
$22071cf4-b55b-470b-82b6-3099cbf19b5c
1.0.0.0
.NETFramework,Version=v4.6
FrameworkDisplayName
.NET Framework 4.6
_CorExeMain
mscoree.dll
<?xml version="1.0" encoding="UTF-8" standalone="yes"?>
<assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0">
<assemblyIdentity version="1.0.0.0" name="MyApplication.app"/>
<trustInfo xmlns="urn:schemas-microsoft-com:asm.v2">
<security>
<requestedPrivileges xmlns="urn:schemas-microsoft-com:asm.v3">
<requestedExecutionLevel level="asInvoker" uiAccess="false"/>
</requestedPrivileges>
</security>
</trustInfo>
</assembly>
`.#n.+
iHu0wMD0v60n7dhuc0.imerMUZaB4YJE0ml0s
r2UgHi0b4
https://files.catbox.moe/9bn8mp.dat
VS_VERSION_INFO
VarFileInfo
Translation
StringFileInfo
000004b0
Comments
CompanyName
FileDescription
Qkunonsexxb
FileVersion
1.0.0.0
InternalName
Qkunonsexxb.exe
LegalCopyright
Copyright
2020
LegalTrademarks
OriginalFilename
Qkunonsexxb.exe
ProductName
Qkunonsexxb
ProductVersion
1.0.0.0
Assembly Version
1.0.0.0
Antivirus Signature
Bkav Clean
Lionic Clean
Elastic malicious (high confidence)
ClamAV Clean
CMC Clean
CAT-QuickHeal Clean
Skyhigh Clean
ALYac Clean
Cylance Unsafe
Zillya Clean
CrowdStrike win/malicious_confidence_100% (W)
Alibaba Clean
K7GW Clean
K7AntiVirus Clean
huorong Clean
Baidu Clean
VirIT Clean
Paloalto Clean
Symantec ML.Attribute.HighConfidence
tehtris Clean
ESET-NOD32 MSIL/TrojanDownloader.Agent.RSQ
APEX Malicious
Avast Win32:MalwareX-gen [Trj]
Cynet Clean
Kaspersky HEUR:Backdoor.MSIL.Androm.gen
BitDefender Clean
NANO-Antivirus Clean
ViRobot Clean
MicroWorld-eScan Clean
Tencent Clean
Sophos Mal/Generic-S
F-Secure Clean
DrWeb Clean
VIPRE Clean
TrendMicro Clean
McAfeeD Real Protect-LS!BA355806BFF2
Trapmine Clean
CTX exe.trojan.androm
Emsisoft Clean
Ikarus Trojan-Downloader.MSIL.Agent
FireEye Clean
Jiangmin Clean
Webroot Clean
Varist Clean
Avira Clean
Fortinet Malicious_Behavior.SB
Antiy-AVL Clean
Kingsoft malware.kb.c.922
Gridinsoft Clean
Xcitium Clean
Arcabit Clean
SUPERAntiSpyware Clean
Microsoft Trojan:Win32/Wacatac.B!ml
Google Clean
AhnLab-V3 Clean
Acronis Clean
McAfee Artemis!BA355806BFF2
TACHYON Clean
VBA32 Clean
Malwarebytes Clean
Panda Clean
Zoner Clean
TrendMicro-HouseCall Clean
Rising Backdoor.Androm!8.113 (CLOUD)
Yandex Clean
SentinelOne Static AI - Malicious PE
MaxSecure Trojan.Malware.300983.susgen
GData Clean
AVG Win32:MalwareX-gen [Trj]
DeepInstinct MALICIOUS
alibabacloud Clean
No IRMA results available.