// Decompiled with JetBrains decompiler // Type:   // Assembly: crypted, Version=4.9.4.5, Culture=neutral, PublicKeyToken=null // MVID: 39ED6F8C-EF75-4E88-8706-EBD78B0ECCC1 // Assembly location: C:\Users\Administrateur\Downloads\Virusshare-00002-msil\Trojan-Dropper.Win32.Injector.elwj-8012f8d9cbc27bdc5242e812bac1932349108916abac095e249196a1ff3b491d.exe internal static class \u0002\u2000 { public static byte[] \u0002(byte[] _param0, byte[] _param1) { byte num1 = _param0[1]; int length = _param1.Length; byte num2 = (byte) (length + 11 ^ (int) num1 + 7); uint num3 = (uint) (((int) _param0[0] | (int) _param0[2] << 8) + ((int) num2 << 3)); ushort num4 = 0; for (int index = 0; index < length; ++index) { if ((index & 1) == 0) { num3 = (uint) ((int) num3 * 214013 + 2531011); num4 = (ushort) (num3 >> 16); } byte num5 = (byte) num4; num4 >>= 8; byte num6 = _param1[index]; _param1[index] = (byte) ((uint) ((int) num6 ^ (int) num1 ^ (int) num2 + 3) ^ (uint) num5); num2 = num6; } return _param1; } }