Category | Package | Started | Completed | Duration | Options | Log(s) |
---|---|---|---|---|---|---|
FILE | exe | 2025-06-11 18:27:59 | 2025-06-11 18:58:44 | 1845 seconds | Show Options | Show Analysis Log |
procmemdump=1
import_reconstruction=1
unpacker=2
norefer=1
no-iat=1
2024-11-25 13:37:15,084 [root] INFO: Date set to: 20250611T16:18:41, timeout set to: 1800 2025-06-11 17:18:41,144 [root] DEBUG: Starting analyzer from: C:\tmp_gell1p8 2025-06-11 17:18:41,144 [root] DEBUG: Storing results at: C:\qDdlkFnGz 2025-06-11 17:18:41,144 [root] DEBUG: Pipe server name: \\.\PIPE\wXevDSJXBA 2025-06-11 17:18:41,144 [root] DEBUG: Python path: C:\Users\Packager\AppData\Local\Programs\Python\Python310-32 2025-06-11 17:18:41,144 [root] INFO: analysis running as an admin 2025-06-11 17:18:41,144 [root] INFO: analysis package specified: "exe" 2025-06-11 17:18:41,144 [root] DEBUG: importing analysis package module: "modules.packages.exe"... 2025-06-11 17:18:42,113 [root] DEBUG: imported analysis package "exe" 2025-06-11 17:18:42,113 [root] DEBUG: initializing analysis package "exe"... 2025-06-11 17:18:42,113 [lib.common.common] INFO: wrapping 2025-06-11 17:18:42,113 [lib.core.compound] INFO: C:\Users\Packager\AppData\Local\Temp already exists, skipping creation 2025-06-11 17:18:42,113 [root] DEBUG: New location of moved file: C:\Users\Packager\AppData\Local\Temp\Ultimate_SAMP_KeyBinder.exe 2025-06-11 17:18:42,113 [root] INFO: Analyzer: Package modules.packages.exe does not specify a DLL option 2025-06-11 17:18:42,113 [root] INFO: Analyzer: Package modules.packages.exe does not specify a DLL_64 option 2025-06-11 17:18:42,113 [root] INFO: Analyzer: Package modules.packages.exe does not specify a loader option 2025-06-11 17:18:42,113 [root] INFO: Analyzer: Package modules.packages.exe does not specify a loader_64 option 2025-06-11 17:18:42,300 [root] DEBUG: Imported auxiliary module "modules.auxiliary.browser" 2025-06-11 17:18:42,332 [root] DEBUG: Imported auxiliary module "modules.auxiliary.digisig" 2025-06-11 17:18:42,456 [root] DEBUG: Imported auxiliary module "modules.auxiliary.disguise" 2025-06-11 17:18:42,472 [root] DEBUG: Imported auxiliary module "modules.auxiliary.human" 2025-06-11 17:18:42,519 [lib.api.screenshot] DEBUG: Importing 'PIL.ImageChops' 2025-06-11 17:18:42,519 [lib.api.screenshot] ERROR: No module named 'PIL' 2025-06-11 17:18:42,519 [root] DEBUG: Imported auxiliary module "modules.auxiliary.screenshots" 2025-06-11 17:18:42,535 [root] DEBUG: Imported auxiliary module "modules.auxiliary.tlsdump" 2025-06-11 17:18:42,535 [root] DEBUG: Initialized auxiliary module "Browser" 2025-06-11 17:18:42,535 [root] DEBUG: attempting to configure 'Browser' from data 2025-06-11 17:18:42,535 [root] DEBUG: module Browser does not support data configuration, ignoring 2025-06-11 17:18:42,535 [root] DEBUG: Trying to start auxiliary module "modules.auxiliary.browser"... 2025-06-11 17:18:42,535 [root] DEBUG: Started auxiliary module modules.auxiliary.browser 2025-06-11 17:18:42,535 [root] DEBUG: Initialized auxiliary module "DigiSig" 2025-06-11 17:18:42,535 [root] DEBUG: attempting to configure 'DigiSig' from data 2025-06-11 17:18:42,535 [root] DEBUG: module DigiSig does not support data configuration, ignoring 2025-06-11 17:18:42,535 [root] DEBUG: Trying to start auxiliary module "modules.auxiliary.digisig"... 2025-06-11 17:18:42,535 [modules.auxiliary.digisig] DEBUG: Checking for a digital signature 2025-06-11 17:18:42,691 [modules.auxiliary.digisig] DEBUG: File is not signed 2025-06-11 17:18:42,691 [modules.auxiliary.digisig] INFO: Uploading signature results to aux/DigiSig.json 2025-06-11 17:18:42,706 [root] DEBUG: Started auxiliary module modules.auxiliary.digisig 2025-06-11 17:18:42,706 [root] DEBUG: Initialized auxiliary module "Disguise" 2025-06-11 17:18:42,706 [root] DEBUG: attempting to configure 'Disguise' from data 2025-06-11 17:18:42,706 [root] DEBUG: module Disguise does not support data configuration, ignoring 2025-06-11 17:18:42,706 [root] DEBUG: Trying to start auxiliary module "modules.auxiliary.disguise"... 2025-06-11 17:18:42,706 [modules.auxiliary.disguise] INFO: Disguising GUID to eebf7374-c733-4252-9a71-d3c91b91d619 2025-06-11 17:18:42,706 [root] DEBUG: Started auxiliary module modules.auxiliary.disguise 2025-06-11 17:18:42,706 [root] DEBUG: Initialized auxiliary module "Human" 2025-06-11 17:18:42,706 [root] DEBUG: attempting to configure 'Human' from data 2025-06-11 17:18:42,706 [root] DEBUG: module Human does not support data configuration, ignoring 2025-06-11 17:18:42,706 [root] DEBUG: Trying to start auxiliary module "modules.auxiliary.human"... 2025-06-11 17:18:42,706 [root] DEBUG: Started auxiliary module modules.auxiliary.human 2025-06-11 17:18:42,706 [root] DEBUG: Initialized auxiliary module "Screenshots" 2025-06-11 17:18:42,706 [root] DEBUG: attempting to configure 'Screenshots' from data 2025-06-11 17:18:42,706 [root] DEBUG: module Screenshots does not support data configuration, ignoring 2025-06-11 17:18:42,706 [root] DEBUG: Trying to start auxiliary module "modules.auxiliary.screenshots"... 2025-06-11 17:18:42,706 [modules.auxiliary.screenshots] WARNING: Python Image Library is not installed, screenshots are disabled 2025-06-11 17:18:42,706 [root] DEBUG: Started auxiliary module modules.auxiliary.screenshots 2025-06-11 17:18:42,706 [root] DEBUG: Initialized auxiliary module "TLSDumpMasterSecrets" 2025-06-11 17:18:42,706 [root] DEBUG: attempting to configure 'TLSDumpMasterSecrets' from data 2025-06-11 17:18:42,706 [root] DEBUG: module TLSDumpMasterSecrets does not support data configuration, ignoring 2025-06-11 17:18:42,706 [root] DEBUG: Trying to start auxiliary module "modules.auxiliary.tlsdump"... 2025-06-11 17:18:42,706 [modules.auxiliary.tlsdump] INFO: lsass.exe found, pid 696 2025-06-11 17:18:42,738 [lib.api.process] INFO: Monitor config for <Process 696 lsass.exe>: C:\tmp_gell1p8\dll\696.ini 2025-06-11 17:18:42,738 [lib.api.process] INFO: Option 'procmemdump' with value '1' sent to monitor 2025-06-11 17:18:42,738 [lib.api.process] INFO: Option 'import_reconstruction' with value '1' sent to monitor 2025-06-11 17:18:42,738 [lib.api.process] INFO: Option 'unpacker' with value '2' sent to monitor 2025-06-11 17:18:42,738 [lib.api.process] INFO: Option 'norefer' with value '1' sent to monitor 2025-06-11 17:18:42,738 [lib.api.process] INFO: Option 'no-iat' with value '1' sent to monitor 2025-06-11 17:18:42,753 [lib.api.process] INFO: Option 'tlsdump' with value '1' sent to monitor 2025-06-11 17:18:42,753 [lib.api.process] INFO: 64-bit DLL to inject is C:\tmp_gell1p8\dll\EeGlvdpK.dll, loader C:\tmp_gell1p8\bin\PoaYJsgW.exe 2025-06-11 17:18:42,831 [root] DEBUG: Loader: IAT patching disabled. 2025-06-11 17:18:42,831 [root] DEBUG: Loader: Injecting process 696 with C:\tmp_gell1p8\dll\EeGlvdpK.dll. 2025-06-11 17:18:42,847 [root] DEBUG: 696: Python path set to 'C:\Users\Packager\AppData\Local\Programs\Python\Python310-32'. 2025-06-11 17:18:42,847 [root] INFO: Disabling sleep skipping. 2025-06-11 17:18:42,847 [root] DEBUG: 696: Full process memory dumps enabled. 2025-06-11 17:18:42,847 [root] DEBUG: 696: Import reconstruction of process dumps enabled. 2025-06-11 17:18:42,847 [root] DEBUG: 696: Active unpacking of payloads enabled 2025-06-11 17:18:42,847 [root] DEBUG: 696: CAPE debug - unrecognised key norefer. 2025-06-11 17:18:42,847 [root] DEBUG: 696: TLS secret dump mode enabled. 2025-06-11 17:18:42,862 [root] DEBUG: 696: InternalYaraScan: Scanning 0x00007FF84A790000, size 0x1f4542 2025-06-11 17:18:42,862 [root] DEBUG: 696: InternalYaraScan hit: RtlInsertInvertedFunctionTable 2025-06-11 17:18:42,862 [root] DEBUG: 696: RtlInsertInvertedFunctionTable 0x00007FF84A7A090E, LdrpInvertedFunctionTableSRWLock 0x00007FF84A8FB4F0 2025-06-11 17:18:42,862 [root] DEBUG: 696: Monitor initialised: 64-bit capemon loaded in process 696 at 0x00007FF8234D0000, thread 1336, image base 0x00007FF60D500000, stack from 0x0000008EFACF4000-0x0000008EFAD00000 2025-06-11 17:18:42,862 [root] DEBUG: 696: Commandline: C:\Windows\system32\lsass.exe 2025-06-11 17:18:42,878 [root] DEBUG: 696: Hooked 5 out of 5 functions 2025-06-11 17:18:42,878 [root] DEBUG: InjectDllViaThread: Successfully injected Dll into process via RtlCreateUserThread. 2025-06-11 17:18:42,878 [root] DEBUG: Successfully injected DLL C:\tmp_gell1p8\dll\EeGlvdpK.dll. 2025-06-11 17:18:42,894 [lib.api.process] INFO: Injected into 64-bit <Process 696 lsass.exe> 2025-06-1 <truncated>
Name | Label | Manager | Started On | Shutdown On | Route |
---|---|---|---|---|---|
win10-2 | win10-2 | KVM | 2025-06-11 18:27:59 | 2025-06-11 18:58:24 | none |
File Name |
Ultimate_SAMP_KeyBinder.exe
|
---|---|
File Type | PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows |
File Size | 743424 bytes |
MD5 | 39921ae030188e1fd4e844f5e38fc8b8 |
SHA1 | 6250b9876a7a8a14ae77ac59a6cda25a1275d9fe |
SHA256 | 519844976cd2f66164e113a4f44bf29f75601dfa48963d6f5455c02ceabe59e6 [VT] [MWDB] [Bazaar] |
SHA3-384 | 4573d446ea7f1eabee1414288172bf697dcc1d8534eaea9a286dace047a4a4f3753fb8ab65ea2c2f292bea3c113e9816 |
CRC32 | 9AECE323 |
TLSH | T17FF4AD61735CAE62DA7D06F65551C2B403665F194871E27A3CCE3E8B37F1BB02A1CA83 |
Ssdeep | 12288:FOcmrcm2iGmSMkuDAE7c2UibXVabxHMLKFhcDRGI8lhvoxxkW8MudbCgJ:F0NPSMVghaRIxhvo48uN |
PE DotNET | File Strings BinGraph Vba2Graph VirusTotal de4dot (0.54) |
Filename |
e35a54846f4cc598cbd1468eee1b0872d9b19ae2dafbfd7b313055e7d8b311e1
|
---|---|
File Type | PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows |
Associated Filenames |
519844976cd2f66164e113a4f44bf29f75601dfa48963d6f5455c02ceabe59e6
|
File Size | 741376 bytes |
MD5 | d8907c68bb916f750f5f4e5daf2902fb |
SHA1 | 9e81a91951b02d94b876762aa34aca68bd2ba9b7 |
SHA256 | e35a54846f4cc598cbd1468eee1b0872d9b19ae2dafbfd7b313055e7d8b311e1 [VT] [MWDB] [Bazaar] |
SHA3-384 | cd541d847c1e7cad9b5fb4739a3f227a742ceede162f6fa771e71d4ed7419b8b3e809bc5d58073a426fc70d27f4fcdc8 |
CRC32 | E27F6882 |
TLSH | T111F4AD61735CAC23DA7D15F64552C6B402665F194871E2BA3CCE3E8B37F1BB02A1CA83 |
Ssdeep | 12288:V2cmrcm2iGmSMkuDAE7c2UibXVabxHMLKFhcDRGI8lhvoxxkW8MudbCgI9:VsNPSMVghaRIxhvo48uN |
PE DotNET | File Strings Bingraph Vba2Graph VirusTotal |
Image Base | Entry Point | Reported Checksum | Actual Checksum | Minimum OS Version | PDB Path | Compile Time | Import Hash | Icon | Icon Exact Hash | Icon Similarity Hash | Icon DHash |
---|---|---|---|---|---|---|---|---|---|---|---|
0x00400000 | 0x000a7afe | 0x00000000 | 0x000bd528 | 4.0 | C:\Users\TheDarkJoker\Documents\Visual Studio 2010\Projects\Ultimate SAMP Binder\Ultimate SAMP Binder\obj\Debug\Ultimate SAMP KeyBinder.pdb | 2010-09-26 08:22:36 | f34d5f2d4577ed6d9ceec516c1f5a744 | 6100708f528cc57da96fa811d68f338b | 96ff9be472c7f8976e706fb38c8277e6 | f2a2ecec489caa21 |
Translation | 0x0000 0x04b0 |
---|---|
FileDescription | Ultimate SAMP KeyBinder |
FileVersion | 1.0.0.1 |
InternalName | Ultimate SAMP KeyBinder.exe |
LegalCopyright | รยฉ 2010 TheDarkJoker94 |
OriginalFilename | Ultimate SAMP KeyBinder.exe |
ProductName | Ultimate SAMP KeyBinder |
ProductVersion | 1.0.0.1 |
Assembly Version | 1.0.3921.18678 |
Name | RAW Address | Virtual Address | Virtual Size | Size of Raw Data | Characteristics | Entropy |
---|---|---|---|---|---|---|
.text | 0x00000200 | 0x00002000 | 0x000a5b04 | 0x000a5c00 | IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ | 7.63 |
.rsrc | 0x000a5e00 | 0x000a8000 | 0x0000f780 | 0x0000f800 | IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ | 3.81 |
.reloc | 0x000b5600 | 0x000b8000 | 0x0000000c | 0x00000200 | IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ | 0.08 |
Name | Offset | Size | Language | Sub-language | Entropy | File type |
---|---|---|---|---|---|---|
RT_ICON | 0x000a8630 | 0x00000128 | LANG_NEUTRAL | SUBLANG_NEUTRAL | 4.64 | None |
RT_ICON | 0x000a8758 | 0x00000368 | LANG_NEUTRAL | SUBLANG_NEUTRAL | 5.85 | None |
RT_ICON | 0x000a8ac0 | 0x00000468 | LANG_NEUTRAL | SUBLANG_NEUTRAL | 5.93 | None |
RT_ICON | 0x000a8f28 | 0x000002e8 | LANG_NEUTRAL | SUBLANG_NEUTRAL | 5.30 | None |
RT_ICON | 0x000a9210 | 0x00000ca8 | LANG_NEUTRAL | SUBLANG_NEUTRAL | 5.81 | None |
RT_ICON | 0x000a9eb8 | 0x000010a8 | LANG_NEUTRAL | SUBLANG_NEUTRAL | 5.69 | None |
RT_ICON | 0x000aaf60 | 0x00000668 | LANG_NEUTRAL | SUBLANG_NEUTRAL | 4.31 | None |
RT_ICON | 0x000ab5c8 | 0x00001ca8 | LANG_NEUTRAL | SUBLANG_NEUTRAL | 4.89 | None |
RT_ICON | 0x000ad270 | 0x000025a8 | LANG_NEUTRAL | SUBLANG_NEUTRAL | 4.75 | None |
RT_ICON | 0x000af818 | 0x00000a68 | LANG_NEUTRAL | SUBLANG_NEUTRAL | 2.71 | None |
RT_ICON | 0x000b0280 | 0x00003228 | LANG_NEUTRAL | SUBLANG_NEUTRAL | 1.82 | None |
RT_ICON | 0x000b34a8 | 0x00004228 | LANG_NEUTRAL | SUBLANG_NEUTRAL | 1.77 | None |
RT_GROUP_ICON | 0x000b76d0 | 0x000000ae | LANG_NEUTRAL | SUBLANG_NEUTRAL | 3.14 | None |
RT_VERSION | 0x000a82f8 | 0x00000338 | LANG_NEUTRAL | SUBLANG_NEUTRAL | 3.42 | None |
Name | Address |
---|---|
_CorExeMain | 0x402000 |
Name | Ultimate SAMP KeyBinder |
---|---|
Version | 1.0.3921.18678 |
Name | Version |
---|---|
System | 4.0.0.0 |
System.Windows.Forms | 4.0.0.0 |
mscorlib | 4.0.0.0 |
System.Drawing | 4.0.0.0 |
Type | Name | Value |
---|---|---|
Assembly | [mscorlib]System.Reflection.AssemblyTitleAttribute | Ultimate SAMP KeyBind |
Assembly | [mscorlib]System.Reflection.AssemblyProductAttribute | Ultimate SAMP KeyBind |
Assembly | [mscorlib]System.Reflection.AssemblyCopyrightAttribute | \xc2\xa9 2010 TheDarkJoker |
Assembly | [mscorlib]System.Runtime.InteropServices.GuidAttribute | 8ebb0171-f897-41a8-b262-a0cafcb232 |
Assembly | [mscorlib]System.Reflection.AssemblyFileVersionAttribute | 1.0.0 |
Assembly | Type Name |
---|---|
System | System.Configuration.ApplicationSettingsBase |
System.Windows.Forms | System.Windows.Forms.Form |
mscorlib | System.Object |
mscorlib | System.MulticastDelegate |
mscorlib | System.ValueType |
System | System.Configuration.SettingChangingEventArgs |
System | System.ComponentModel.CancelEventArgs |
mscorlib | System.EventArgs |
System | System.ComponentModel.IContainer |
System.Windows.Forms | System.Windows.Forms.Label |
System.Windows.Forms | System.Windows.Forms.Button |
System.Windows.Forms | System.Windows.Forms.PictureBox |
mscorlib | System.Resources.ResourceManager |
mscorlib | System.Globalization.CultureInfo |
System.Windows.Forms | System.Windows.Forms.RadioButton |
System.Windows.Forms | System.Windows.Forms.CheckBox |
mscorlib | System.IO.StringWriter |
mscorlib | System.IO.StringReader |
System.Windows.Forms | System.Windows.Forms.TextBox |
System.Windows.Forms | System.Windows.Forms.GroupBox |
System.Windows.Forms | System.Windows.Forms.OpenFileDialog |
System.Windows.Forms | System.Windows.Forms.ComboBox |
System.Windows.Forms | System.Windows.Forms.ImageList |
System.Windows.Forms | System.Windows.Forms.ToolBarButton |
System.Windows.Forms | System.Windows.Forms.SaveFileDialog |
System.Windows.Forms | System.Windows.Forms.ToolBar |
System.Windows.Forms | System.Windows.Forms.LinkLabel |
System.Windows.Forms | System.Windows.Forms.ToolTip |
System.Windows.Forms | System.Windows.Forms.KeyEventArgs |
System.Windows.Forms | System.Windows.Forms.ToolBarButtonClickEventArgs |
System.Windows.Forms | System.Windows.Forms.FormClosingEventArgs |
System.Windows.Forms | System.Windows.Forms.LinkLabelLinkClickedEventArgs |
mscorlib | System.Collections.Generic.List`1 |
System.Windows.Forms | System.Windows.Forms.Keys |
System.Windows.Forms | System.Windows.Forms.KeyEventHandler |
mscorlib | System.IAsyncResult |
mscorlib | System.AsyncCallback |
mscorlib | System.Text.StringBuilder |
mscorlib | System.Reflection.AssemblyTitleAttribute |
mscorlib | System.Reflection.AssemblyDescriptionAttribute |
mscorlib | System.Reflection.AssemblyConfigurationAttribute |
mscorlib | System.Reflection.AssemblyCompanyAttribute |
mscorlib | System.Reflection.AssemblyProductAttribute |
mscorlib | System.Reflection.AssemblyCopyrightAttribute |
mscorlib | System.Reflection.AssemblyTrademarkAttribute |
mscorlib | System.Reflection.AssemblyCultureAttribute |
mscorlib | System.Runtime.InteropServices.ComVisibleAttribute |
mscorlib | System.Runtime.InteropServices.GuidAttribute |
mscorlib | System.Reflection.AssemblyVersionAttribute |
mscorlib | System.Reflection.AssemblyFileVersionAttribute |
mscorlib | System.Runtime.Versioning.TargetFrameworkAttribute |
mscorlib | System.Diagnostics.DebuggableAttribute |
mscorlib | System.Diagnostics.DebuggableAttribute/DebuggingModes |
mscorlib | System.Runtime.CompilerServices.CompilationRelaxationsAttribute |
mscorlib | System.Runtime.CompilerServices.RuntimeCompatibilityAttribute |
mscorlib | System.Runtime.CompilerServices.CompilerGeneratedAttribute |
System | System.CodeDom.Compiler.GeneratedCodeAttribute |
System | System.Configuration.SettingsBase |
mscorlib | System.IDisposable |
mscorlib | System.Type |
mscorlib | System.RuntimeTypeHandle |
System | System.ComponentModel.ComponentResourceManager |
System | System.ComponentModel.ISupportInitialize |
System.Windows.Forms | System.Windows.Forms.Control |
System.Drawing | System.Drawing.Font |
System.Drawing | System.Drawing.FontStyle |
System.Drawing | System.Drawing.GraphicsUnit |
System.Drawing | System.Drawing.Point |
System.Drawing | System.Drawing.Size |
System.Windows.Forms | System.Windows.Forms.ButtonBase |
System.Windows.Forms | System.Windows.Forms.FlatStyle |
mscorlib | System.EventHandler |
System.Drawing | System.Drawing.Color |
System.Drawing | System.Drawing.Image |
System.Windows.Forms | System.Windows.Forms.PictureBoxSizeMode |
System.Drawing | System.Drawing.SystemColors |
System.Drawing | System.Drawing.SizeF |
System.Windows.Forms | System.Windows.Forms.ContainerControl |
System.Windows.Forms | System.Windows.Forms.AutoScaleMode |
System.Windows.Forms | System.Windows.Forms.Control/ControlCollection |
System.Windows.Forms | System.Windows.Forms.FormBorderStyle |
System.Windows.Forms | System.Windows.Forms.FormStartPosition |
mscorlib | System.Diagnostics.DebuggerNonUserCodeAttribute |
mscorlib | System.Reflection.Assembly |
System | System.ComponentModel.EditorBrowsableAttribute |
System | System.ComponentModel.EditorBrowsableState |
System.Windows.Forms | System.Windows.Forms.CheckState |
System.Windows.Forms | System.Windows.Forms.MessageBox |
System.Windows.Forms | System.Windows.Forms.DialogResult |
System.Windows.Forms | System.Windows.Forms.MessageBoxButtons |
System.Windows.Forms | System.Windows.Forms.MessageBoxIcon |
mscorlib | System.IO.Directory |
System.Windows.Forms | System.Windows.Forms.FileDialog |
mscorlib | System.String |
mscorlib | System.IO.File |
mscorlib | System.IO.TextWriter |
mscorlib | System.IO.FileAttributes |
mscorlib | System.Char |
mscorlib | System.Convert |
mscorlib | System.IO.TextReader |
mscorlib | System.Boolean |
System.Windows.Forms | System.Windows.Forms.CommonDialog |
System.Windows.Forms | System.Windows.Forms.TextBoxBase |
System | System.ComponentModel.CancelEventHandler |
System.Windows.Forms | System.Windows.Forms.ImageLayout |
System | System.ComponentModel.Container |
System.Windows.Forms | System.Windows.Forms.BorderStyle |
System.Windows.Forms | System.Windows.Forms.ToolBar/ToolBarButtonCollection |
System.Windows.Forms | System.Windows.Forms.ToolBarButtonClickEventHandler |
System.Windows.Forms | System.Windows.Forms.ToolBarButtonStyle |
System.Windows.Forms | System.Windows.Forms.ImageListStreamer |
System.Windows.Forms | System.Windows.Forms.ImageList/ImageCollection |
System.Windows.Forms | System.Windows.Forms.ComboBoxStyle |
System.Windows.Forms | System.Windows.Forms.ListControl |
System.Windows.Forms | System.Windows.Forms.ComboBox/ObjectCollection |
System.Windows.Forms | System.Windows.Forms.AnchorStyles |
System.Windows.Forms | System.Windows.Forms.LinkLabelLinkClickedEventHandler |
System.Windows.Forms | System.Windows.Forms.Cursors |
System.Windows.Forms | System.Windows.Forms.Cursor |
System.Drawing | System.Drawing.Icon |
System.Windows.Forms | System.Windows.Forms.FormClosingEventHandler |
mscorlib | System.Enum |
mscorlib | System.Array |
mscorlib | System.Collections.IEnumerator |
System.Windows.Forms | System.Windows.Forms.FormWindowState |
mscorlib | System.Byte |
System.Windows.Forms | System.Windows.Forms.SendKeys |
mscorlib | System.IO.Path |
System.Windows.Forms | System.Windows.Forms.Application |
mscorlib | System.Int32 |
mscorlib | System.Exception |
System | System.Diagnostics.Process |
mscorlib | System.Delegate |
mscorlib | System.Threading.Interlocked |
mscorlib | System.IntPtr |
mscorlib | System.Runtime.InteropServices.DllImportAttribute |
mscorlib | System.Runtime.InteropServices.StructLayoutAttribute |
mscorlib | System.Runtime.InteropServices.LayoutKind |
mscorlib | System.STAThreadAttribute |
No hosts contacted.
No domains contacted.
No hosts contacted.
No TCP connections recorded.
No UDP connections recorded.
No domains contacted.
No HTTP(s) requests performed.
No SMTP traffic performed.
No IRC requests performed.
No ICMP traffic performed.
No CIF Results
No Suricata Alerts
No Suricata TLS
No Suricata HTTP