Static | ZeroBOX

PE Compile Time

2076-03-27 03:44:53

PE Imphash

f34d5f2d4577ed6d9ceec516c1f5a744

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00002000 0x0000c4c4 0x0000c600 5.81479489849
.rsrc 0x00010000 0x000005d4 0x00000600 4.19311568135
.reloc 0x00012000 0x0000000c 0x00000200 0.0815394123432

Resources

Name Offset Size Language Sub-language File type
RT_VERSION 0x000100a0 0x00000346 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_MANIFEST 0x000103e8 0x000001ea LANG_NEUTRAL SUBLANG_NEUTRAL XML 1.0 document, UTF-8 Unicode (with BOM) text, with CRLF line terminators

Imports

Library mscoree.dll:
0x402000 _CorExeMain

!This program cannot be run in DOS mode.
`.rsrc
@.reloc
Z?_d
_b`*
v4.0.30319
#Strings
Graips
CompilationRelaxationsAttribute
System.Runtime.CompilerServices
mscorlib
System
Boolean
RuntimeCompatibilityAttribute
DebuggableAttribute
System.Diagnostics
DebuggingModes
ComVisibleAttribute
System.Runtime.InteropServices
AssemblyTitleAttribute
System.Reflection
String
AssemblyDescriptionAttribute
AssemblyCompanyAttribute
AssemblyProductAttribute
AssemblyCopyrightAttribute
AssemblyTrademarkAttribute
AssemblyFileVersionAttribute
TargetFrameworkAttribute
System.Runtime.Versioning
Graips.exe
<Module>
SystemSecurityCryptographyXCertificatesXCertificateEnumeratorE
Object
SystemNetConfigurationSmtpSectionU
<>c__DisplayClass2_0
<>c__DisplayClass2_1
SystemDataCommonDbConnectionPoolKeyq
SystemCodeDomCodeBinaryOperatorExpressions
SystemSecurityCryptographyXCertificatesXEnhancedKeyUsageExtensionz
<>o__0
SystemNetRegistryConfigurationD
PrivateImplementationDetailsStaticArrayInitTypeSizeB
SystemLocalAppContextSwitchesd
SystemNetUnsafeNclNativeMethodsAppXHelperGuiThreadInfoB
MulticastDelegate
SystemDataSqlClientSqlEnclaveAttestationParametersx
SystemDataProviderBaseDbConnectionPoolGroupProviderInfoA
SystemDataSqlClientServerInfos
NewtonsoftJsonJsonTextWriterDoWriteStartObjectAsyncdv
SystemNetNetworkInformationIpAddrStringL
SystemNetCookien
SystemNetUnsafeNclNativeMethodsOSSOCKTransmitPacketsElementFlagsU
SystemConfigurationSettingsGroupDescriptionAttributeE
SystemNetNetworkInformationIPInterfaceStatisticsr
ValueType
SystemNetMailSmtpReplyReaderFactoryS
SystemNetCacheForwardingReadStreamInnerAsyncResultG
SystemCollectionsSpecializedStringDictionaryL
SystemCodeDomCodeIndexerExpressionu
SystemComponentModelISitez
SystemComponentModelDesignITypeDescriptorFilterServicek
SystemNetUnsafeNclNativeMethodsHttpApiHTTPREQUESTCHANNELBINDSTATUSq
InstallManager
SystemDataSqlClientSqlAeadAesCbcHmacFactoryE
<PrivateImplementationDetails>
__StaticArrayInitTypeSize=128
<Module>{87673387-5535-43F0-B1CF-AD0194B0151F}
Idt5pgryuYoFVQiX6j
oRZtxCaSAYh6EEGEIZ
SFU4mbT3GMret7THonf
WP6RZJql8gZrNhVA9v
dg3ypDAonQcOidMs0w
vXgxlLQcVHhY7dY50X
RJDcsuMfOxrTCYImPe
Attribute
iGR41459RDH4FvPdNk`1
qcBC7nbplYPB6DW0yw
QZEOeHRUkDiNqCWT0p
OFfwWh6ZIHjfnqBOWx
BIpvxRBRb2dOGl802m
VtNVUKGulysZw81C3E
MacgPI7JyVeAhNaPvd
GL8NaIwq2KOvLQhMFX
yy2w1VXOQgx806ubre
N7UlhA3IRW2ugh7tWg
RI754BJF754hNSApRW
YLCGmBEaUwBbEqLM01
AwgKvrHJUS3TxryUsj
hHEYokUTtehNq5ji0d
rE4lpnT863QnijKQK5
<PrivateImplementationDetails>{DC854D96-A486-4D66-B46D-35341850EC4C}
__StaticArrayInitTypeSize=256
__StaticArrayInitTypeSize=40
__StaticArrayInitTypeSize=30
__StaticArrayInitTypeSize=32
__StaticArrayInitTypeSize=16
__StaticArrayInitTypeSize=64
__StaticArrayInitTypeSize=18
XLtB7PAYopi0IwLfTu
HNn0rIPRmGV1pH8c4r
Wp4WeonVtFe36gZen4
R7k0BE2VneYXM9ORfd
OdAHCEqTpa4mfN9Noj
vUFgwjeDNQo47wURKy
x9DfbUo8ZHGsWSIGFo
B88Z3t0ZignjbFsefp
fvFts9L8ojIpf1O1TO
Af5JDnjk4VGiJNPafv
V4cUtcWVZ0bsWBfDDL
V0nLejvj0G5NZ7vkyr
l2FKnrfjU3hwdp6PST
PeWYay5xZsij0KVnkJ
rUkjZmrVUpRlknjLi2
Xt8pQbuTHHGtv36WrJ
qxnEADKJfuc6dASwa9
FFI4MgVZ4UTI6JMRDI
XvG9YBskBqoPvD3TYj
z5kkI2y6cpTcYmJT91
vw5EAriCL7LNHTDHES
dHHt65C1i7sl2c6oO5
E6EHf6b1ELxWVApxqw
HEFcxD1bMUCGM776df
iTbaqFavGOdYk1Xvfl
ukeUf5NDN06SvEa0DY
Lb1VSMBOYr4d3YhTXG
E84dC271sejgk3leoL
I37nOWkBlef3lFyF66
ddxIHUUSNpTVrt3a7Z6
Bf1jpmUAao5NAhL0XJS
fOqYYWUPQ52V16L70jG
dGgk1WUnXVnUBblNUxC
Y7h1CvU21K6QqxiApNS
MO89iKUgXu3Ng9PmqBa
wmyJy5UDshfKKrUAwOW
HPko7iUdMCbAOGD9Nmc
xsj0GMUG0civNZKxXtN
IDqomxUZYTsc4jainTq
EndOfStreamException
System.IO
MicrosoftWinNativeMethodsh
SystemSecurityAuthenticationExtendedProtectionChannelBindingD
ServicePointManager
System.Net
SecurityProtocolType
SystemNetNetworkInformationPingcDisplayClassV
Func`1
IntPtr
DllNotFoundException
SystemNetDnsPermissionAttributew
Action
Invoke
result
<SystemSecurityAuthenticationExtendedProtectionChannelBindingD>b__0
UInt64
UInt32
UInt16
SystemNetCoreResponseDataA
BunifuFrameworkUIBunifuTrackbarg
SystemNetSecurityRemoteCertValidationCallbackl
SystemNetConfigurationUnicodeDecodingConformanceP
<SystemSecurityAuthenticationExtendedProtectionChannelBindingD>b__1
<SystemSecurityAuthenticationExtendedProtectionChannelBindingD>b__2
SystemDataCommonDbConnectionPoolKeyqasd
SystemNetConfigurationSmtpNetworkElementk
.cctor
SystemDataCommonSqlDoubleStoragei
SystemNetMailMailAddressCollectionk
SystemCodeDomCodeAttributeDeclarationCollectionV
StringBuilder
System.Text
get_Host
set_Host
get_SystemCodeDomCodeGotoStatementd
SystemCodeDomCodeGotoStatementd
_SystemNetGlobalProxySelectionB
SystemIOWatcherChangeTypesf
arguments
CallSite`1
System.Core
Func`3
CallSite
Create
CallSiteBinder
Target
CSharpArgumentInfo
Microsoft.CSharp.RuntimeBinder
Microsoft.CSharp
Func`4
SystemNetNetworkInformationIPInterfaceStatisticsra
MethodBase
Exception
SystemNetCacheWinInetCacheEntryTypeU
action
get_SystemNetGlobalProxySelectionB
set_SystemNetGlobalProxySelectionB
SystemNetGlobalProxySelectionB
<>p__0
<>p__1
<>p__2
LoadLibrary
fileName
kernel32.dll
FreeLibrary
hModule
GetProcAddress
procName
kernel32
SystemComponentModelPropertyTabAttributeh
SystemDataCommonDbProviderFactoriesJ
SystemNetUnsafeNclNativeMethodsHttpApiHTTPBINDINGINFOH
SystemNetCoreResponseDataAtionName
Dispose
SystemDataSqlClientResultD
object
method
hProcess
isWow64
BeginInvoke
IAsyncResult
AsyncCallback
callback
EndInvoke
lpBaseAddress
lSystemNetNetworkInformationScopeLevelA
lpNumberOfBytesWritten
exitCode
handle
hToken
lpApplicationName
lpCommandLine
lpProcessAttributes
lpThreadAttributes
bInheritHandles
dwCreationFlags
lpEnvironment
lpCurrentDirectory
lpStartupInfo
lpProcesBunifuFrameworkUIBunifuTrackbarg
hNewToken
hThread
pContext
lpAddress
dwSize
flAllocationType
flProtect
ContextFlags
e_magic
e_lfanew
NumberOfSections
Signature
FileHeader
OptionalHeader
AddressOfEntryPoint
ImageBase
SizeOfImage
SizeOfHeaders
VirtualAddress
SizeOfRawData
PointerToRawData
dwProcessId
dwThreadId
lpReserved
lpDesktop
lpTitle
dwXSize
dwYSize
dwXCountChars
dwYCountChars
dwFillAttribute
dwFlags
wShowWindow
cbReserved2
lpReserved2
hStdInput
hStdOutput
hStdError
RemoveCurrent
<SystemSecurityCryptographyCAPIBaseCERTALTNAMEENTRYUNIONg>k__BackingField
get_SystemSecurityCryptographyCAPIBaseCERTALTNAMEENTRYUNIONg
set_SystemSecurityCryptographyCAPIBaseCERTALTNAMEENTRYUNIONg
SystemSecurityCryptographyCAPIBaseCERTALTNAMEENTRYUNIONg
85DB5EA0B4AA299B62FA66D9F45EFA29876848C2
Kh2o8BSHbd
Module
gEfcPlhhC5Aq3
typemdt
FieldInfo
MethodInfo
PRZkZqsNsa
x4Dk2IHVmX
Assembly
O1BkIDx0L0
V9fkgxQPQA
LrEkS2eXQL
s6pkoGoeab
onZkkIlVOi
RSACryptoServiceProvider
System.Security.Cryptography
Tqek0lIh21
Dictionary`2
System.Collections.Generic
emjkxI4Yxp
HkLkNdDPtB
OObkplyC7t
wcyk8nIyBt
aatkD4ZSGk
WaKkhokJrA
zl0ksqgIH1
Qy5kfBXtEh
MrkkWebIMK
VM5kd0GoFG
SortedList
System.Collections
XtMknffM5M
URnkCOceLK
abxkLGOVrU
rNZkehfwNu
eXJkjmTXDX
wpoklx4RIX
xo4kuDarJK
fMAkKtNIoA
CgSk1JZr60
VE2k4S5okQ
firstrundone
lmdkVksVkh
Hashtable
BV0kmUIPgx
yBRkv0eFeZ
tTVkFDSO7A
zIOkYypt1M
tuYkt9D06I
etmkyDG2SG
K7PkOHxqAd
GetTypeFromHandle
RuntimeTypeHandle
get_Assembly
RuntimeHelpers
InitializeArray
RuntimeFieldHandle
set_UseMachineKeyStore
zuqcPlhJXpQbW
ab9oDe4UH3
BitConverter
GetBytes
TAOohhiP7R
zDKosecjaB
ubAof6RgCm
YpJoWsPi7X
BEVodWAYPB
gX8onkMSd7
PEXoCqmS4w
SymmetricAlgorithm
AesCryptoServiceProvider
RijndaelManaged
Activator
CreateInstance
ObjectHandle
System.Runtime.Remoting
Unwrap
XS8oLZGMXn
CryptoConfig
get_AllowOnlyFipsAlgorithms
XEDoeIU7mj
MD5CryptoServiceProvider
HashAlgorithm
ComputeHash
vBuojdip3i
Stream
NSmolmd79S
TransformBlock
SDQoufkqT0
BinaryReader
get_BaseStream
set_Position
ReadUInt32
TAJo1U8fio
ParameterInfo
DynamicMethod
System.Reflection.Emit
ILGenerator
Monitor
System.Threading
GetManifestResourceStream
get_Length
ReadBytes
MemoryStream
GetFields
BindingFlags
MemberInfo
get_MetadataToken
get_Item
get_Module
GetGenericArguments
ResolveMethod
get_IsStatic
get_FieldType
Delegate
CreateDelegate
SetValue
GetParameters
get_DeclaringType
get_IsValueType
MakeByRefType
get_ParameterType
get_ReturnType
GetILGenerator
OpCode
OpCodes
Ldarg_0
Ldarg_1
Ldarg_2
Ldarg_3
Ldarg_S
Tailcall
Callvirt
Ggxo4dRvtE
vC5oV1W6FK
w65ov7siki
hg2oY5yaSM
Convert
FromBase64String
Encoding
get_Unicode
GetString
FPvotekByE
svloy6EVGc
iaKoOg5GGg
Marshal
GetMethod
PvroikJllY
get_Location
Exists
GetName
AssemblyName
get_CodeBase
ToString
Replace
GetType
GetProperty
PropertyInfo
GetValue
H1sorrpiaP
oGjoaYPPLS
w3ZoqRBn5p
Concat
GetDelegateForFunctionPointer
YDsoA9ylfU
mTfoQqVbOE
YeeoMqaS3J
tdOo5aPwrv
Q2sob65b9D
umLocehuEC
op_Equality
VZpoRI2LOR
FileStream
FileMode
FileAccess
FileShare
IDisposable
Njco6C1nc4
rLIoBbVVpm
ToArray
oN9oGXMAK7
CryptoStream
set_Key
set_IV
CreateDecryptor
ICryptoTransform
CryptoStreamMode
JBbo7fndGL
tM1owh06yH
HpuoXD9KwB
vLyo3J8m2E
fnqoJe2xAG
IHuoEWDKCc
J6JoHkltLH
FtroUJNIfo
KIxoTLeGZr
S0yo9WrR0W
G9skPDgcXb
CreateEncryptor
ToBase64String
classthis
nativeEntry
nativeSizeOfCode
JDNkifbo3S
jsbkrdexts
KPVkbuTpLj
KDikMXewCI
B2XkaLi4dH
hx5kqNgSj4
TVtkAMaqpL
ReadInt32
VDqkQKyKML
lpName
lpType
buffer
flNewProtect
lpflOldProtect
dwDesiredAccess
bInheritHandle
value__
Hh5kRkRi0A
Vp8cPlhzEV5E6
$$method0x6000317-1
$$method0x6000332-1
$$method0x6000332-2
$$method0x6000340-1
$$method0x6000340-2
$$method0x6000353-1
$$method0x6000395-1
$$method0x60005b3-1
eeN8dlxuX
pamUe6STI
D6ct8Dmts
gXoRDmEJS
h7ShLMB9t
gHugEl3Pg
wajD9gDKf
bxGdme6bj
xpfGF8QNe
TlrUqGxXET
xUeZDRayS
OeuFcs91K
wmK9juFea
u37lRfjnr
CSharpBinderFlags
y5QQUckxG
NlGmf6JFv
hhapQHPiQ
ItuxpVVSp
tdoTsUFpi
CSharpArgumentInfoFlags
aiZMkbB3o
ExpressionType
System.Linq.Expressions
IEnumerable`1
qxyXsruAe
YlfcN55er
eko6Npufy
xcbO6sqv4
ktj4GOBNx
mYDwYARQy
gCW3eo80a
xatY6I0SZ
wbDEdGwIK
SM3JLdRFp
uoiHSZHkO
euxIWgLW8
WluzxIRY0
jR3UURm9K8
HxbU89VMRB
jOAUtvusEH
aZXURHYNY3
HnRUhrJkHY
cH9Ue3UXi7
K2TUoScfxs
U0JU0LTnpP
yriULeS1Wx
e8BUjckUDG
Append
get_UTF8
Binder
ToInt32
get_Chars
ToUInt32
BinaryOperation
op_Inequality
Environment
op_Explicit
SizeOf
ToInt64
AllocHGlobal
FreeHGlobal
ResolveType
get_ManifestModule
UnverifiableCodeAttribute
System.Security
ParamArrayAttribute
ReliabilityContractAttribute
System.Runtime.ConstrainedExecution
Consistency
CompilerGeneratedAttribute
UnmanagedFunctionPointerAttribute
CallingConvention
CharSet
FlagsAttribute
s0C23P99NhetfGuCAx.IqZSWwnKrninOCtPIL
Graips.g.resources
aR3nbf8dQp2feLmk31.lSfgApatkdxsVcGcrktoFd.resources
System.Security.Permissions.SecurityPermissionAttribute, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089
SkipVerification
WrapNonExceptionThrows
Windows Cmd
Windows Command Line
Windows Corp.
5.14.22.1
.NETFramework,Version=v4.0
FrameworkDisplayName
.NET Framework 4
dg3ypDAonQcOidMs0w.WP6RZJql8gZrNhVA9v+RJDcsuMfOxrTCYImPe+iGR41459RDH4FvPdNk`1[[System.Object, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]][]
SUsSystem.Runtime.InteropServices.CharSet, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089
CharSet
s-BJwWYa
lSystem.Resources.ResourceReader, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089#System.Resources.RuntimeResourceSet
PADPADP
lSystem.Resources.ResourceReader, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089#System.Resources.RuntimeResourceSet
fSystem.Drawing.Icon, System.Drawing, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3ajSystem.CodeDom.MemberAttributes, System, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089mSystem.Globalization.CultureInfo, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089fSystem.Drawing.Size, System.Drawing, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a
QSystem.Drawing, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a
System.Drawing.Icon
IconData
IconSize
System.Drawing.Size
System.Drawing.Size
height
ISystem, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089
System.CodeDom.MemberAttributes
value__
System.Globalization.CultureInfo
m_isReadOnly
compareInfo
textInfo
numInfo
dateTimeInfo
calendar
m_dataItem
cultureID
m_name
m_useUserOverride
System.Globalization.CompareInfo
System.Globalization.TextInfo%System.Globalization.NumberFormatInfo'System.Globalization.DateTimeFormatInfo
System.Globalization.Calendar
System.Globalization.CompareInfo
m_name
win32LCID
culture
m_SortVersion
System.Globalization.SortVersion
System.Globalization.TextInfo
m_listSeparator
m_isReadOnly
m_cultureName
customCultureName
m_nDataItem
m_useUserOverride
m_win32LangID
%System.Globalization.NumberFormatInfo"
numberGroupSizes
currencyGroupSizes
percentGroupSizes
positiveSign
negativeSign
numberDecimalSeparator
numberGroupSeparator
currencyGroupSeparator
currencyDecimalSeparator
currencySymbol
ansiCurrencySymbol
nanSymbol
positiveInfinitySymbol
negativeInfinitySymbol
percentDecimalSeparator
percentGroupSeparator
percentSymbol
perMilleSymbol
nativeDigits
m_dataItem
numberDecimalDigits
currencyDecimalDigits
currencyPositivePattern
currencyNegativePattern
numberNegativePattern
percentPositivePattern
percentNegativePattern
percentDecimalDigits
digitSubstitution
isReadOnly
m_useUserOverride
m_isInvariant
validForParseAsNumber
validForParseAsCurrency
Infinity
-Infinity
QSystem.Drawing, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a
System.Drawing.Size
height
DBRfhn M
_CorExeMain
mscoree.dll
<?xml version="1.0" encoding="UTF-8" standalone="yes"?>
<assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0">
<assemblyIdentity version="1.0.0.0" name="MyApplication.app"/>
<trustInfo xmlns="urn:schemas-microsoft-com:asm.v2">
<security>
<requestedPrivileges xmlns="urn:schemas-microsoft-com:asm.v3">
<requestedExecutionLevel level="asInvoker" uiAccess="false"/>
</requestedPrivileges>
</security>
</trustInfo>
</assembly>
"!%$'&(&)(*&+&,&-&.&/&0&1&2&3&4&5&8797:7;7<7=7>7
SystemDiagnosticsFilterElemente
Expect100Continue
SecurityProtocol
GNetConfigurationRequestCachingSectionInternalYFw0PykmDjIdHQ8aIykaNQ==
GNetConfigurationRequestCachingSectionInternalYwAwLSkMLzQKID4c
KNetConfigurationRequestCachingSectionInternalYF0oKhITCi0FLwwZIFw0PCh7NDQ0IBAWGwMkNR08ZXw=
LNetConfigurationRequestCachingSectionInternalYyk0PykcNDQJPxQDLCYoMBJ5DjszEHtS
KNetConfigurationRequestCachingSectionInternalYFwaMCh5DggJMHMEGyk3ew==
KNetConfigurationRequestCachingSectionInternalYjYsHil4O3MeIQQWG1wsKih4FXw=
LNetConfigurationRequestCachingSectionInternalYwMOPy8DDikyIgAcGylbLBkTP3w=
LNetConfigurationRequestCachingSectionInternalY10oNi8MDhAzCn8FIzYsPB8cDjUyVAxa
LNetConfigurationRequestCachingSectionInternalY1xbdQUhCgkKPxQ6GCYoKhIcCgUyVXNfIzYKdg==
KNetConfigurationRequestCachingSectionInternalY1w0dh0MMDgKMAAEKFxbMy8MDnU0JntS
LNetConfigurationRequestCachingSectionInternalY1xbdQUhChUKPxQ6GCYoKhIcCgUyVXNfIzYKdg==
LNetConfigurationRequestCachingSectionInternalYFw0dh0MMDgKMAAEKFxbMy8MDnU0JntS
LNetConfigurationRequestCachingSectionInternalYAM0PC8caS0GIC4WIzkkLQ==
LNetConfigurationRequestCachingSectionInternalYQAwECkmaSkzIRwfIzYGFhEnFi0JVBQfG1xWew==
NetConfigurationRequestCachingSectionInternalY
LNetConfigurationRequestCachingSectionInternalYF0OPC8MDjUcDHMDHS1XHhEcEgUyICoDGwAzNQINFnQzVBQDGz0VIR0mDjgzVSoZGwRSdgchGTQdJHIYNS0gAi8cIHE0PwwDKTlXKi8TCjgJMDEcMCggdxImIDEJVzIDHDgwMCp5DjQAMA9cN1wndxIxDXMdMy0VNyk3MQQPM3w=
KNetConfigurationRequestCachingSectionInternalYylbdSkmIDcJMBQ7HSYoNikmO3w=
GNetConfigurationRequestCachingSectionInternalYCYwdigDFXccHn4XGiYoNgcmYTgJMBRZID1XPy8YYRU1PwhfIzlTCRETCgg0LxQYLSkOPC8MDjQKPwwqGDYsLCl5bTQKMAhfKDYscykmFhIKPwheGyYwdA==
ynbFKKXAPgFo
System.Core, Version=3.5.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089
System.Security.Cryptography.AesCryptoServiceProvider
s0C23P99NhetfGuCAx.IqZSWwnKrninOCtPIL
{11111-22222-10009-11111}
{11111-22222-10009-11112}
{11111-22222-50001-00000}
GetDelegateForFunctionPointer
file:///
Location
ResourceA
Virtual
Write
Process
Memory
Protect
Process
Close
Handle
kernel
32.dll
{11111-22222-10001-00001}
{11111-22222-10001-00002}
{11111-22222-20001-00001}
{11111-22222-20001-00002}
{11111-22222-30001-00001}
{11111-22222-30001-00002}
{11111-22222-40001-00001}
{11111-22222-40001-00002}
{11111-22222-50001-00001}
{11111-22222-50001-00002}
$this.SnapToGrid
$this.TrayLargeIcon
$this.Icon
$this.Locked
$this.DrawGrid
progressBar1.Modifiers
$this.Localizable
$this.Language
$this.GridSize
$this.TrayHeight
progressBar1.Locked
C:\Windows\Microsoft.NET\Framework\v4.0.30319\AddInProcess32.exe
VS_VERSION_INFO
VarFileInfo
Translation
StringFileInfo
000004b0
Comments
Windows Command Line
CompanyName
FileDescription
Windows Cmd
FileVersion
5.14.22.1
InternalName
Graips.exe
LegalCopyright
Windows Corp.
LegalTrademarks
OriginalFilename
Graips.exe
ProductName
Windows Cmd
ProductVersion
5.14.22.1
Assembly Version
12.3.5.3
Antivirus Signature
Bkav Clean
Elastic malicious (high confidence)
DrWeb Trojan.PWS.Siggen2.61810
MicroWorld-eScan Trojan.GenericKD.36402460
FireEye Generic.mg.e4e9be25d58ace41
CAT-QuickHeal TrojanDownloader.MSIL
McAfee GenericRXNT-PO!E4E9BE25D58A
Cylance Unsafe
VIPRE Trojan.Win32.Generic!BT
AegisLab Trojan.MSIL.Seraph.a!c
Sangfor Trojan.Win32.Save.a
K7AntiVirus Trojan-Downloader ( 0057865f1 )
BitDefender Trojan.GenericKD.36402460
K7GW Trojan-Downloader ( 0057865f1 )
Cybereason malicious.5d58ac
BitDefenderTheta Gen:NN.ZemsilF.34608.em2@a8jr89
Cyren W32/Trojan.MTQF-9017
Symantec ML.Attribute.HighConfidence
TotalDefense Clean
TrendMicro-HouseCall TROJ_GEN.R049C0PC121
Avast Win32:TrojanX-gen [Trj]
ClamAV Win.Packed.Razy-9835418-0
Kaspersky HEUR:Trojan-Downloader.MSIL.Seraph.gen
Alibaba TrojanDownloader:MSIL/Seraph.f02320ae
NANO-Antivirus Trojan.Win32.Seraph.inigmm
ViRobot Clean
Rising Downloader.Seraph!8.111C6 (CLOUD)
Ad-Aware Trojan.GenericKD.36402460
Emsisoft Trojan.GenericKD.36402460 (B)
Comodo Clean
F-Secure Heuristic.HEUR/AGEN.1136648
Baidu Clean
Zillya Clean
TrendMicro TROJ_GEN.R049C0PC121
McAfee-GW-Edition GenericRXNT-PO!E4E9BE25D58A
CMC Clean
Sophos Mal/Generic-S
Ikarus Trojan-Downloader.MSIL.Agent
GData Trojan.GenericKD.36402460
Webroot Clean
Avira HEUR/AGEN.1136648
MAX malware (ai score=85)
Antiy-AVL Clean
Kingsoft Clean
Gridinsoft Trojan.Win32.Downloader.sa
Arcabit Trojan.Generic.D22B751C
SUPERAntiSpyware Clean
AhnLab-V3 Trojan/Win32.Agent.C4193552
ZoneAlarm HEUR:Trojan-Downloader.MSIL.Seraph.gen
Microsoft Backdoor:Win32/Bladabindi!ml
Cynet Malicious (score: 100)
ESET-NOD32 a variant of MSIL/TrojanDownloader.Agent.HLP
Acronis Clean
VBA32 TScope.Trojan.MSIL
ALYac Trojan.GenericKD.36402460
TACHYON Clean
Malwarebytes Spyware.RedLineStealer
Panda Trj/GdSda.A
APEX Malicious
Tencent Msil.Trojan-downloader.Agent.Amcf
Yandex Clean
SentinelOne Static AI - Malicious PE
MaxSecure Clean
Fortinet PossibleThreat
AVG Win32:TrojanX-gen [Trj]
Paloalto generic.ml
CrowdStrike win/malicious_confidence_80% (D)
Qihoo-360 Win32/TrojanDownloader.Generic.HgIASPsA
No IRMA results available.