Static | ZeroBOX

PE Compile Time

2082-12-31 08:42:09

PE Imphash

f34d5f2d4577ed6d9ceec516c1f5a744

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00002000 0x00001fa8 0x00002000 6.46005876829
.rsrc 0x00004000 0x00000010 0x00000200 0.0
.reloc 0x00006000 0x0000000c 0x00000200 0.0815394123432
.iat 0x00008000 0x00053c00 0x00053c00 7.99947663205

Imports

Library mscoree.dll:
0x402000 _CorExeMain

!This program cannot be run in DOS mode.
`.rsrc
@.reloc
v4.0.30319
#Strings
__StaticArrayInitTypeSize=10
5E582722D85118600C5BE64CCB2C92D3EB1C1F3F49419DED0151A1519E4F7080
AD446C34F2704865A9E424BE5755BC8F9140414FD7E1456F1A4581F8C2D778A0
List`1
ToUInt32
ToInt32
__StaticArrayInitTypeSize=1355
ToUInt16
__StaticArrayInitTypeSize=36
SHA256
get_UTF8
<Module>
<PrivateImplementationDetails>
CallWindowProcA
KAjnjxhuzA
B86C921CDC504CE0C498E5F2E9548A01E33F930047FB5D22BF2DA2270E113ECD
get_playerID
set_playerID
get_ASCII
System.IO
value__
cujbYAa
inputData
Oajmsxbyza
mscorlib
System.Collections.Generic
lpPrevWndFunc
Stopped
<playerID>k__BackingField
TrimEnd
message
IDisposable
RuntimeFieldHandle
Console
playerName
ReadLine
WriteLine
ValueType
Dispose
Create
PlayerState
FindNewState
CompilerGeneratedAttribute
GuidAttribute
DebuggableAttribute
ComVisibleAttribute
AssemblyTitleAttribute
AssemblyTrademarkAttribute
TargetFrameworkAttribute
AssemblyFileVersionAttribute
AssemblyConfigurationAttribute
AssemblyDescriptionAttribute
CompilationRelaxationsAttribute
AssemblyProductAttribute
AssemblyCopyrightAttribute
AssemblyCompanyAttribute
RuntimeCompatibilityAttribute
ToByte
onMove
Handler.exe
dwSize
Encoding
System.Runtime.Versioning
FromBase64String
ToString
GetString
MemoryEnough
ComputeHash
get_ExecutablePath
get_Length
dataLength
keyLength
kernel32.dll
user32.dll
lParam
wParam
Program
get_Item
System
HashAlgorithm
Application
System.Reflection
Exception
Person
ConsoleKeyInfo
onJump
StringBuilder
Finder
Handler
BitConverter
set_ForegroundColor
ConsoleColor
ResetColor
.cctor
System.Diagnostics
System.Runtime.InteropServices
System.Runtime.CompilerServices
DebuggingModes
ReadAllBytes
System.Windows.Forms
get_Chars
RuntimeHelpers
lpAdress
OisvxYAsbws
Concat
AppendFormat
Object
lpflOldProtect
VirtualProtect
flNewProtect
sectionContent
prompt
Convert
System.Text
AiqbzhAzujw
osjxbzAUbauw
InitializeArray
dataKey
ReadKey
System.Security.Cryptography
Destroy
IUDBCBzxaty
op_Equality
WrapNonExceptionThrows
Handler
Copyright
2025
$ac049bfa-2dd8-4f1a-9314-11e3fed61454
1.0.0.0
.NETFramework,Version=v4.7.2
FrameworkDisplayName
.NET Framework 4.7.2
C:\Users\Joker\source\repos\Handler\Handler\obj\Release\Handler.pdb
_CorExeMain
mscoree.dll
o%2E`L
*#Cs9ve9
+q%FL`p9
I{_CDq
`/4qqj
~]uGvpV8Z
ft+TWu
7Rej3P
%BJ|p<
?lVR(Y%
Mux.l>u87
/Rw#+td
'_#j^yt
8~#PD|
{XIGYO
=I*(G4
"GTPUh
.WOG[T
vx%apj
iP7!bCg[J
_f_qQiF
>|GwhK
FM7f$u
:y63-_ K
b8hsY(
_87zGP
`nH[?
$U\"&4L%
F^lZwu&;
oJArLWK
ZX'FE
rH|DM?
G_nB-W
%XIuwJ
E%0Na|
oi#BwN
t\Nvru
=o}!kC
wyl~qC
X5Vf~P
&!HQkHz6<
O-n7+e
*:Ktk3w
r,HD}"
%0igVac|[D
(;p6:|
Cc,/d<
} pvTx
cy_=^,
+*-(QJ
}66W1
hefMhx8Q
L)_)T)>r
]HAL#y
x/~~W&(]
<2f'x)D
!0|T=Iq
b'^=Ui
u=+UV=
QBvdo%
vT@pqf
?@7WiQAB
:W$o9W
/[-CyB
D\b&uE
p!h`Zm`
V_eLE}
@p+PH}
xnPB;nc
.aSp$
@NxE1
Oq~xpF|
B$^iI`
bR4-_eOgG
Jw*nQWa
ue;- 1
:$5*ALH
YejIc9
`sS-Bm
, lc"jL-
i}1(-h
qb>-]t
/.219m
mzN$EqJ
$1>W=f[
ZP[}xJ
kF=FRY
dE~Ut1
Q^mTl_j
S^HE-I
P;'NZ/
0`,&H|dk
!Gq(|I
6'E{f;
:lw`wK
)'3i]<1
X>uZ9t
q6fhON
AzK5k7P
\Yg<(=X
Pf+~hF
A,S\'_+
`*kG<h
A+OQp2
;'~UZE
j>+t[e
%cVW7>
wm!mj:
T"KPv'
[Gii;?
IJh#QV$v
6jccH#
+Ba5?I
y}8.K08
R8Uc; #
;mL<Kn
N>3vLAeo
{_g,K
VfUEVFn
?pT9^v
&N:9X4
`Cur]K
eV/df~
A2)US=
\E;0S#$
"oa!Q$zW
9V>J`pF
3BLR@/
vIS[}v*
k6PoUW
oC,Ac?K^?L
bYZRVp8
I|a&*C
H,ba !pj
5;gaj;4<
(W;y^C
SyV9p]
%*itLC
uIu=
I|KU8=
*mGs`YA
&`(gJ$Tr*/
@87`xK
sT8i/x
x|C}D"
%l?co&
#6G7?,V(4
$?9d'\
}[4,*D@?
!e'8t|
`iI2zG
[!Pd9rR3
00^w9v,
Yz#h[j?
hdS8r'
d#4~^J
) n1W#
0EX;F`
)e#dW?
zV!}p`&
gX}(&m
#EtBCa
i<T/FRvg
%oDPAk
HR0c@;
t,g'EP
G{yjJ
t^g#ly
=_:4EUA
DtH;5)
2h/jsa_
{B#W9W
JmxI87]j
/?^)r9
{oz5LJ
Dd+kF1
/F"qL?S!
Ohm'#IW
+w+M!e
gJy)uK
a_Z)%#
`aWeGb
)"#//W
/MC-?
z;R$:x
p(L7KB
nY+$k*
wrmr8Q
#aqWvrO
$Q$}/M
Owf%r[.
pl8Sg*g
\2 ?Q9
oAcgL}y
CI|{X-W
coXGvR M.
(0Y^A=
r3Cq/0
Ieeh{8(i
BBQX '
[F"O}z
w5#vy~
-gV--s_Z
W6@bY.
5B.7,T
vbI0\=
R6M&I0
\9TR4om
8zAX'i
`C<t)A
$~,vu{
"+SrY
db0(Hk
k?u.h)-
*.(X$X
03y)<p!
gv24~#<
sLx4U2a
.j5yAd
uxw?%Iqh
`.OW:.
?>JdOR
2M5nO.l
uC{sTqq
{1k$8D"
2yUnPq
z\*Ef[
*8FqNd
oE">Y:.`o
`YpE)X7p
YLjkZ it
1]Xy^|
]@#u;cM
UKrHl4
v@6s0>
T Dj4:
_&-Db
J)L*w
> 2z{5
a:~|zX
[r1wW\
eb|wll
cWcO'o
HR#g.q
$rD`_u
ih:xB#Y
PhVkPc
/j{dx;>DHv3cB
M3*&Q !,
cc1k`,
=Vy(gh
/CCd}'
+y$(U`%
>,'BjA
yx25'l[
3~T[4A
w6JDb6
)l2}L}
'X{*yP
mFKYid
>=@|O
Q;Knado1
"w,srW
-oMV5bC83
WWy`3
6?K V3
b.gEM!
jDI~/2*]y
\I~xNhs
a=d2c
)l_O=Q
xNuCg=
n'SaRZ
X"*C$x
!j[@?"
FkMQ_:B
uO?5/?6
@/RK8A
YbFWy&
p].+PL
1&ot_)
L5ykEp
NyLI`T
@1C!`N(#
Zu3F}t
Db X\^3Z
!rn0:L
`QIq^B
^#QlhtKhM
63EkfU
/f]o+[
^F{Z\'>
LqHDIl8
V'S~(4
su]^4}
y[<jEs
y,w{Q.E
w2;TNH
-!ydA?
1.7j4v
o }6dc
oHmzYvUq*:
v-9<FHs
@a#3.:
QXh<E+l
|z#8$-
c:)-cv
4w|Fh-
Q>0e'-av
HpQL}`}4m
I2.oR)
SeHPrTM
A[}jWR
\<jfhCq
&9%hxW
X"gYW.'
KU&3hq
byi6x }M$
20U}]33x
1nKU@/
GIy\$G
:H%PgJ
kzI)m3
'c>qFL
e16n#x
|\yf&
}w6p~5
<R/WX*jC
hgY],8a,
wj#y3a<@^
H]+UTS
c$1k$pdi
~oZ49\
bl8:.@
~Bd'e_
U*AG*T
]$p,ad/
2Y1;4
7#~\Mo
dSFK1B
s%p&I4
j_faS7N
\aC,v6^
Y(_Ux:
7q6\6
W+{s.^
~mIhO[
GaC[dTM
DO/@|\
YA;ib0B
(Dv:cz
_KJY8&2
LQzWMk
FXtMW?
ZlBbj]
8jm2D{
(:){@b
n}E;rnA
>:N\Av
eRhO=;
=pjh-q
t+&&T^
2'p:]S+T
gea[h
hmVL$q
&j{MJ:
@b;Y 4g
u3L/,
veAn&d
6T$^&l
r?j3W|
9R-?q2
:&~QNZ
,Y59V@o&/
3<zQ#
6cAFSqSRa
OqG)TW
L)lo>X
-[7Pa/
bn10S!
p~%t`@
gJa^&:M
J$PL3aR
$AS-+/A
r<aCkr#
|a+"mD5
Y~U0!1
/{86hI
8>lQ':
^`*"x}t~rh
.$i081
1mRY}rz
jz-Uc=
t92-IM
r(Ik,Xy
J1F|^S
*uh8&L#
PD\HVp
=X=7dG
d)onI
ehA'.B
Xd{X{=
L4>,Cd
18}ZUf:
a m!3T
[`]Nm
:U=l||
g'e0I
{n`~%
N3S!q}I
vSIn'f
T{e%qn
pOsver
>z}fP'
}icKs-
^VJmSq|
s\'\Zl(:
E*<@)q`
-2}!yZ
F`;iib^
V}<iW,
[8C$ya7
0ge_h%/
blw}_N`
4=P$n|!oF~
@TxM"Mi'
3g/{L{
`2'd@7
kL:Lm)
4_g&cv
.tcVs<
r4\zX34
BRl~d
?#ZsQE
c\=]=`9p
1EQ4\!
m5KF&f]O
b?c ~+3
FDGOXju
8V){k1
`>8{r]
*.t+;
z4lqUSq
Jii5%C
#h)qK6
z)!<Io
(&`'5$
K;O'EI
-ZEs.+O
AeX6@I
)m>;b?
kj(;AX
?4HF&}
Q['QV
L;wyMO
pbhPu)
)<,6c4E
?7eTmF
-m\wVd
= <@dw>
B>VYfG
Fm$Ut,
h}Lxk&
flSN2M
fgl;qFR
7N$4$r
l =P!A!
O6`O8d
~U!nlk
Ra '6zX
RVmrDw
;WJZ]w
Wk^)_2T~
,@)y)=b
YBW4s:~
V /:kX
Jh-Cev
E(1|ON*^
pTc`|NA
Cf;:[uB
w,fj4vv
ykpu/k*
-?Ln"N
<Hp;M
h-hpC[
JEJBL;
/S$^G25o
A8~X{+
ys=A:*
:ob[0F
Ii?u^EYr
`=n}vO`
3ZH(=\
u4+V,p;
|Bgqsb
|Ne6{z
eRIyvP~z*
xGFX;R$
XZ!!>u=TD
(>!uM
'MtIb$
#N"8Avc
@qW*w&
{n5>ZS
MxtHj&
wFGLS_[
3Q.[Hb6
yAQ?T$
^9>L8$X
Au4fiG
yNsz/KC
79_)FT
=`MHt|e
a+B_6-+
[Nl@,l
${P$X*
2^s<W5
ib$foA
`dO%b]
A5iU:h
b1*Y6<
9QA%Ry
([A]g]D"O
=Mg%0cy;
&s"OTC
|@IY0EQ
UcJ$>t5
W^#Sh;9
["bE}L
B5X%\_R8
D/}-K!
p7e|r>7?
VVh067>
Cx-q;p
(loCbn
Z Yl?'W
uRe$1F
CLean;1
[m"9?>
A-uzza|V
KSZQ,iS
SzF'-%es
IL8yPT
~RG6Y/hBv
v+]pz
c1&a$S
k.j*J'
A7MW 5X
-kNJlT
F'jf29
OOU{1[
m_MzpG
~6n+iM
o/M}p4
VqlIXq
J!RPn
O]]gw$
o+E7nE/8
eS#gDx
]44Y??
G 6s/K3
auJ`9;
a"7QM0P
].Ke{Mx<{x
u;&;p
:41>}
J}<t
M.pV0M
NL{f*x
/Got;A
Gn)rq~.
c)hmUS
UFtCZ<
s/vqTg
O>^#a3
SS[-#
b{Mf>*
`4|\FT
OYzt<1
+<q$cq
/\~`vO
r%;kBgV
|l!+aAb
x^oBC"
1D6!Ff
5~_QMs
]2]qh]
K?is ("
{0:x2}
MjRmODU0Njk1YWVlNmQ3NGI2ZDFlZGQ2ZGZkYWY0NTJkMzRlNzMzMTA4NTA0MTA0OTJhZGQzNWFiNTVkZDA0Mw==
Antivirus Signature
Bkav W32.AIDetectMalware.CS
Lionic Trojan.Win32.Injuke.16!c
Elastic malicious (high confidence)
MicroWorld-eScan Trojan.GenericKDZ.109744
CMC Clean
CAT-QuickHeal Trojan.MSIL
Skyhigh BehavesLike.Win32.Generic.fc
ALYac Trojan.GenericKDZ.109744
Cylance Unsafe
Zillya Clean
Sangfor Suspicious.Win32.Save.a
CrowdStrike win/malicious_confidence_100% (W)
Alibaba Trojan:MSIL/LummaC.eabc2148
K7GW Trojan ( 005c1fbc1 )
K7AntiVirus Trojan ( 005c1fbc1 )
huorong Trojan/MSIL.Agent.vl
Baidu Clean
VirIT Trojan.Win32.MSIL_Heur.A
Paloalto generic.ml
Symantec ML.Attribute.HighConfidence
tehtris Clean
ESET-NOD32 a variant of MSIL/Kryptik.ANDU
APEX Malicious
Avast Win32:CrypterX-gen [Trj]
Cynet Clean
Kaspersky HEUR:Trojan.MSIL.Injuke.gen
BitDefender Trojan.GenericKDZ.109744
NANO-Antivirus Trojan.Win32.Injuke.kvqtlp
ViRobot Trojan.Win.Z.Lazy.353280.S
Tencent Trojan.MSIL.Injuke.hc
Sophos Troj/MSIL-TGV
F-Secure Trojan.TR/AD.Nekark.ykevg
DrWeb Trojan.PWS.Lumma.1819
VIPRE Trojan.GenericKDZ.109744
TrendMicro Clean
McAfeeD Real Protect-LS!401FC7901EF8
Trapmine Clean
CTX exe.trojan.msil
Emsisoft Trojan.GenericKDZ.109744 (B)
Ikarus Trojan.MSIL.Krypt
FireEye Generic.mg.401fc7901ef8ff89
Jiangmin Clean
Webroot W32.Trojan.Gen
Varist W32/MSIL_Kryptik.MAH.gen!Eldorado
Avira TR/AD.Nekark.ykevg
Fortinet MSIL/Kryptik.ANCY!tr
Antiy-AVL Clean
Kingsoft MSIL.Trojan.Injuke.gen
Gridinsoft Trojan.Heur!.020120A1
Xcitium Malware@#3i2be5vm8sy28
Arcabit Trojan.Generic.D1ACB0
SUPERAntiSpyware Clean
Microsoft Trojan:MSIL/LummaC.AAC!MTB
Google Detected
AhnLab-V3 Trojan/Win.CrypterX-gen.C5730790
Acronis Clean
McAfee Artemis!401FC7901EF8
TACHYON Clean
VBA32 TScope.Trojan.MSIL
Malwarebytes Trojan.Crypt.MSIL.Generic
Panda Trj/CI.A
Zoner Clean
TrendMicro-HouseCall Clean
Rising Malware.Obfus/MSIL@AI.97 (RDM.MSIL2:yf33AOU1zueVYskr9RlxKw)
Yandex Trojan.Injuke!9fRVdO2i2Co
SentinelOne Static AI - Malicious PE
GData Trojan.GenericKDZ.109744
AVG Win32:CrypterX-gen [Trj]
DeepInstinct MALICIOUS
alibabacloud Trojan:MSIL/LummaC.AMI2XJC
No IRMA results available.