Static | ZeroBOX

PE Compile Time

2050-02-03 12:21:29

PDB Path

?reticifirma.pdb

PE Imphash

dae02f32a21e03ce65412f6e56942daa

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00002000 0x00005fc4 0x00006000 5.75761192856
.rsrc 0x00008000 0x00000394 0x00000400 2.87102944482
.reloc 0x0000a000 0x0000000c 0x00000200 0.0815394123432

Resources

Name Offset Size Language Sub-language File type
RT_VERSION 0x00008058 0x0000033c LANG_NEUTRAL SUBLANG_NEUTRAL data

Imports

Library mscoree.dll:
0x402000 _CorDllMain

!This program cannot be run in DOS mode.
`.rsrc
@.reloc
(_4OX(W
v4.0.30319
#Strings
reticifirma
CompilationRelaxationsAttribute
System.Runtime.CompilerServices
mscorlib
System
Boolean
RuntimeCompatibilityAttribute
DebuggableAttribute
System.Diagnostics
DebuggingModes
AssemblyTitleAttribute
System.Reflection
String
AssemblyDescriptionAttribute
AssemblyCompanyAttribute
AssemblyProductAttribute
AssemblyCopyrightAttribute
AssemblyTrademarkAttribute
ComVisibleAttribute
System.Runtime.InteropServices
GuidAttribute
AssemblyFileVersionAttribute
TargetFrameworkAttribute
System.Runtime.Versioning
SuppressIldasmAttribute
76946ffd-7650-42b0-a82c-55627be9ba4a
reticifirma.dll
<Module>
lLwfUbHXRCuC2ukoYZ
DKEyh82Oo8TsaaJiYU
ApplicationBase
Microsoft.VisualBasic.ApplicationServices
Microsoft.VisualBasic
usHmsWx6pbE33l11jJ
H5AJAabjpCRG3ChoAh
Computer
Microsoft.VisualBasic.Devices
po82BFaoBjuNEOIdFP
PvkiGxE2SOs7mFO2CO
Object
kl1QM7jrxZMQCMHwjl
vqSxwwL29foaDcK99Q`1
Resources
reticifirma.My.Resources
MySettings
reticifirma.My
ApplicationSettingsBase
System.Configuration
MySettingsProperty
GeBeFfrCBp6EQHkFNO
MulticastDelegate
CAW9VwDt6IApkJxqGY
JfhX6W3YXlLwjktMw3
yKQ7w7FjUKRJeZU7yQ
rMU3tD4uG3IAuvtvLA
A9n9OmSpvTMhgHa38W
gcjLUJChcTvcuu6mq6
bd2Ps5ybMfOV1odA93
xS4WWhWxTOfkaZjYIo
DhJv49NpGC6Th6g1sm
RPCINDJ8oh3j6YssMc
ehhPunB3PV1ceAUyMY
ValueType
k28wqKiarRdvF3C5L1
System.Windows.Forms
<PrivateImplementationDetails>
__StaticArrayInitTypeSize=9
__StaticArrayInitTypeSize=12
__StaticArrayInitTypeSize=14
__StaticArrayInitTypeSize=16
__StaticArrayInitTypeSize=17
__StaticArrayInitTypeSize=18
__StaticArrayInitTypeSize=20
__StaticArrayInitTypeSize=21
<Module>{AF942FF9-82A2-4473-AAF7-8EC992FDA52F}
IsWeMGYWO0wCQtbCmS
cADdLmprCYqIHZn0oJ
wdWIptX9Q3c9EFgHoh
fP26svcVJeuvyYLjs9
bmbDaG893SR2bPoWE0
<PrivateImplementationDetails>{CAC7C93B-0ED6-456C-B671-AA3CDD562F90}
__StaticArrayInitTypeSize=256
__StaticArrayInitTypeSize=40
__StaticArrayInitTypeSize=30
__StaticArrayInitTypeSize=32
__StaticArrayInitTypeSize=64
PoATh4o82
vFoABjuNE
aIdmFPhvk
wGxL2SOs7
.cctor
lLwHfUbXR
DFfXCBp6E
GlKxEyh8O
xUJasHmsW
WjJPZ5AJA
quC22ukoY
N8TbsaaJi
KpbEE33l1
ejpjCRG3C
Equals
RuntimeHelpers
GetObjectValue
GetHashCode
l99iQpJWk
GetTypeFromHandle
RuntimeTypeHandle
ToString
VwEYOKxed
UD7rcPTLTQwWe4HiNs
jdCVaeA007W6ZJ711F
Activator
CreateInstance
ynupa8weB
cbri37mqSgjX2m7tW6
t9VMwt6IA
ContextValue`1
Microsoft.VisualBasic.MyServices.Internal
get_Value
set_Value
yJWkQwKEOKxedXnua8
jFOK2COif
ResourceManager
System.Resources
mXvrjmvig
CultureInfo
System.Globalization
get_ResourceManager
ReferenceEquals
get_Assembly
Assembly
get_Culture
set_Culture
Culture
defaultInstance
SettingsBase
Synchronized
get_Default
Default
get_Settings
Settings
Q7Wy6ZJ71
WF2Wbri37
SSgNjX2m7
InitializeArray
RuntimeFieldHandle
GGJDwFvbL
wfrXvjPmvigZGJwFvb
IntPtr
op_Explicit
Marshal
GetDelegateForFunctionPointer
Delegate
Conversions
Microsoft.VisualBasic.CompilerServices
ToGenericParameter
C1Q3M7rxZ
IEnumerator
System.Collections
ProcessModule
Contains
Concat
Process
GetCurrentProcess
get_Modules
ProcessModuleCollection
ReadOnlyCollectionBase
GetEnumerator
get_Current
get_ModuleName
ToLower
Operators
CompareString
get_BaseAddress
MoveNext
IDisposable
Dispose
zQCFMHwjl
UD74rcPLT
get_Size
ReadInt32
BitConverter
ToInt32
Encoding
System.Text
get_ASCII
GetString
ToInt16
VwWSe4HiN
Format
SizeOf
IsNullOrEmpty
Exception
Buffer
BlockCopy
GetBytes
ProjectData
SetProjectError
GetProcessById
ClearProjectError
RUNRUNRUNRUNRUN
compatible
WmdCCVae0
BeginInvoke
IAsyncResult
AsyncCallback
DelegateCallback
DelegateAsyncState
EndInvoke
DelegateAsyncResult
Invoke
applicationName
commandLine
processAttributes
threadAttributes
inheritHandles
UInt32
creationFlags
environment
currentDirectory
startupInfo
processInformation
thread
context
process
baseAddress
buffer
bufferSize
bytesRead
bytesWritten
handle
address
length
protect
xkJcxqGYu
zhX86WYXl
kwjlktMw3
yKQe7w7jU
lRJUeZU7y
VCM9U3tDu
Y3IwAuvtv
kAMZ9n9Om
yvTvMhgHa
n8W5PcjLU
uhcuTvcuu
Kmqd62d2P
X5b6MfOV1
G29BfoaDc
IContainer
System.ComponentModel
disposing
OW6JBqSxw
Container
ContainerControl
set_AutoScaleMode
AutoScaleMode
System.Drawing
set_ClientSize
set_Text
1C329924865741E0222D3EAD23072CFBED14F96E2B0432573068EB0640513101
2C0412DE7C9CA89BA1741405AFE42BDBBF5C593AF401BAE7AAD9E76161CB151D
53BCA28C2B7B9D6F9A4432615443647CBC70F7137A99C32C4FE0393E983069C1
5AC30B28FF3FBDC25D2E505BA60C7D00B459583890A7C2122BB94E1CE2E36130
61EB1EAEC36D6C66222C3A08EF909A23E30BA3E6A48031A97D32844D419D7A7F
692DA2843CBACA99B83A9994E4A84EDD0782A0103794EEBAF3CDCA5F4CDF5089
6E0235A94207B099CD6854D7C85C0BA4D9964089F4C2490343341E5CBF940C13
71C60E9E311AE9A0C47A3D75E462A68823D2DF0E48B75B191DCB6D0FB3A7B535
80778D02999F0FE76624D246E6D0329258E382400CD1EFD7178617E7FA92760C
9799DDA2257CAFA991AA38A16BCA3FEF8E1DC74A710A45540F92B1FA6BEBB325
A74220FD9E76976DED4364DA1835B79DD53228E1E5F24C67940CA5D5546F6982
E6648DDE6193D41F2893C7FFAB23DCB30F604E4FF6A4B2329AA4CA261AF75756
EBE7EFCCB0A610C6A5C504C1C40E39B9C17FFCF22165A0CFC352EC24AE254BBF
F919155552609DC87750C7CA3293D4D849967603581BE4E344F55FA55DEC58D4
NdAg93pS4
Module
QIdSvsxxNIFXC
typemdt
FieldInfo
MethodInfo
ResolveType
GetFields
MemberInfo
get_MetadataToken
ResolveMethod
MethodBase
CreateDelegate
SetValue
get_ManifestModule
callback
object
result
tWhIxTOfk
scqSvsxUNH2xI
$$method0x6000317-1
$$method0x6000332-1
$$method0x6000332-2
$$method0x6000340-1
$$method0x6000340-2
$$method0x6000353-1
$$method0x6000395-1
$$method0x60005b3-1
GeneratedCodeAttribute
System.CodeDom.Compiler
EditorBrowsableAttribute
EditorBrowsableState
DebuggerHiddenAttribute
StandardModuleAttribute
HideModuleNameAttribute
HelpKeywordAttribute
System.ComponentModel.Design
DebuggerNonUserCodeAttribute
CompilerGeneratedAttribute
DesignerGeneratedAttribute
DebuggerStepThroughAttribute
MyGroupCollectionAttribute
reticifirma.Resources.resources
reticifirma.g.resources
aR3nbf8dQp2feLmk31.lSfgApatkdxsVcGcrktoFd.resources
{Eu:iH
WrapNonExceptionThrows
reticifirma
Copyright
2022
$33d2954d-8ac5-4a13-b111-bedc870bdea3
1.0.0.0
.NETFramework,Version=v4.0
FrameworkDisplayName
.NET Framework 4
MyTemplate
11.0.0.0
My.Computer
My.Application
My.User
My.WebServices
3System.Resources.Tools.StronglyTypedResourceBuilder
16.0.0.0
KMicrosoft.VisualStudio.Editors.SettingsDesigner.SettingsSingleFileGenerator
16.8.1.0
My.Settings
4System.Web.Services.Protocols.SoapHttpClientProtocol
Create__Instance__
Dispose__Instance__
lSystem.Resources.ResourceReader, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089#System.Resources.RuntimeResourceSet
PADPADP
lSystem.Resources.ResourceReader, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089#System.Resources.RuntimeResourceSet
PADPADP
lSystem.Resources.ResourceReader, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089#System.Resources.RuntimeResourceSet
fSystem.Drawing.Icon, System.Drawing, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3ajSystem.CodeDom.MemberAttributes, System, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089mSystem.Globalization.CultureInfo, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089fSystem.Drawing.Size, System.Drawing, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a
QSystem.Drawing, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a
System.Drawing.Icon
IconData
IconSize
System.Drawing.Size
System.Drawing.Size
height
ISystem, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089
System.CodeDom.MemberAttributes
value__
System.Globalization.CultureInfo
m_isReadOnly
compareInfo
textInfo
numInfo
dateTimeInfo
calendar
m_dataItem
cultureID
m_name
m_useUserOverride
System.Globalization.CompareInfo
System.Globalization.TextInfo%System.Globalization.NumberFormatInfo'System.Globalization.DateTimeFormatInfo
System.Globalization.Calendar
System.Globalization.CompareInfo
m_name
win32LCID
culture
m_SortVersion
System.Globalization.SortVersion
System.Globalization.TextInfo
m_listSeparator
m_isReadOnly
m_cultureName
customCultureName
m_nDataItem
m_useUserOverride
m_win32LangID
%System.Globalization.NumberFormatInfo"
numberGroupSizes
currencyGroupSizes
percentGroupSizes
positiveSign
negativeSign
numberDecimalSeparator
numberGroupSeparator
currencyGroupSeparator
currencyDecimalSeparator
currencySymbol
ansiCurrencySymbol
nanSymbol
positiveInfinitySymbol
negativeInfinitySymbol
percentDecimalSeparator
percentGroupSeparator
percentSymbol
perMilleSymbol
nativeDigits
m_dataItem
numberDecimalDigits
currencyDecimalDigits
currencyPositivePattern
currencyNegativePattern
numberNegativePattern
percentPositivePattern
percentNegativePattern
percentDecimalDigits
digitSubstitution
isReadOnly
m_useUserOverride
m_isInvariant
validForParseAsNumber
validForParseAsCurrency
Infinity
-Infinity
QSystem.Drawing, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a
System.Drawing.Size
height
kernel32WriteProcessMemorykernel32.dllResumeThreadNtUnmapViewOfSectionReadProcessMemoryGetThreadContextWow64SetThreadContextSetThreadContextntdll.dllCreateProcessAVirtualAllocExLoadLibraryAWow64GetThreadContextx
DBRfhn M
?reticifirma.pdb
_CorDllMain
mscoree.dll
)X71XDAX]QX]YX]aX]iX]qX]yX
.Sb.Kb.s
.#J.;J.3b.+b@
$#'&(&)&*&+&,&-&
reticifirma.Resources
$this.SnapToGrid
$this.TrayLargeIcon
$this.Icon
$this.Locked
$this.DrawGrid
progressBar1.Modifiers
$this.Localizable
$this.Language
$this.GridSize
$this.TrayHeight
progressBar1.Locked
VS_VERSION_INFO
VarFileInfo
Translation
StringFileInfo
000004b0
Comments
CompanyName
FileDescription
reticifirma
FileVersion
1.0.0.0
InternalName
reticifirma.dll
LegalCopyright
Copyright
2022
LegalTrademarks
OriginalFilename
reticifirma.dll
ProductName
reticifirma
ProductVersion
1.0.0.0
Assembly Version
1.0.0.0
Antivirus Signature
Bkav Clean
Lionic Clean
Elastic malicious (high confidence)
ClamAV Clean
CMC Clean
CAT-QuickHeal cld.trojan.msil
Skyhigh Clean
ALYac Clean
Cylance Unsafe
Zillya Clean
Sangfor Trojan.Win32.Injector.V5mg
CrowdStrike win/malicious_confidence_100% (D)
Alibaba Trojan:MSIL/Injector.85dee727
K7GW Trojan ( 004df5941 )
K7AntiVirus Trojan ( 004df5941 )
huorong Clean
Baidu Clean
VirIT Clean
Paloalto generic.ml
Symantec Trojan.Gen.MBT
tehtris Clean
ESET-NOD32 a variant of MSIL/Injector.OBE
APEX Malicious
Avast Win32:MalwareX-gen [Misc]
Cynet Clean
Kaspersky HEUR:Trojan.MSIL.Agent.gen
BitDefender Trojan.GenericKD.76310327
NANO-Antivirus Clean
ViRobot Clean
MicroWorld-eScan Trojan.GenericKD.76310327
Tencent Win32.Trojan.Agen.Jflw
Sophos Mal/Generic-S
F-Secure Heuristic.HEUR/AGEN.1326624
DrWeb Trojan.InjectNET.46
VIPRE Clean
TrendMicro Clean
McAfeeD ti!A72933E4C1CA
Trapmine Clean
CTX dll.trojan.msil
Emsisoft Trojan.GenericKD.76310327 (B)
Ikarus Trojan.MSIL.Injector
GData Win32.Trojan.Agent.QK1TA8
Jiangmin Clean
Webroot Clean
Varist Clean
Avira HEUR/AGEN.1326624
Antiy-AVL Clean
Kingsoft Clean
Gridinsoft Clean
Xcitium Clean
Arcabit Clean
SUPERAntiSpyware Clean
ZoneAlarm Clean
Microsoft Trojan:Win32/Wacatac.B!ml
Google Detected
AhnLab-V3 Trojan/Win.Generic.C4971898
Acronis Clean
McAfee Artemis!CAD4853EB1E8
TACHYON Clean
VBA32 Clean
Malwarebytes Trojan.Injector.MSIL
Panda Trj/Chgt.AD
Zoner Clean
TrendMicro-HouseCall Clean
Rising Clean
Yandex Clean
SentinelOne Static AI - Malicious PE
MaxSecure Trojan.Malware.300983.susgen
Fortinet MSIL/OBE!tr
AVG Win32:MalwareX-gen [Misc]
DeepInstinct MALICIOUS
alibabacloud Trojan:MSIL/Injector.OKM
No IRMA results available.