Код:
Additional information
File size: 156160 bytes
MD5...: f7cd54f260e52fb08dc7f38db11bb34a
SHA1..: 99c40ae7bdaa1d287178a6bb713281d543369a54
SHA256: 748ac452367616eb940189dee2caba47d7030f3ebf4151972a55da6b309d462e
ssdeep: 3072:VMrS7qraRKxp/0mrAu6hwImYKmAJOIN39+wYC6LdiBxrBQv4naihOvE25:S<BR>MKxWmrAthwIU7OINt+QNxr+7vEi<BR>
PEiD..: -
TrID..: File type identification<BR>Win32 Executable Generic (42.3%)<BR>Win32 Dynamic Link Library (generic) (37.6%)<BR>Generic Win/DOS Executable (9.9%)<BR>DOS Executable Generic (9.9%)<BR>Autodesk FLIC Image File (extensions: flc, fli, cel) (0.0%)
PEInfo: PE Structure information<BR><BR>( base data )<BR>entrypointaddress.: 0x8787<BR>timedatestamp.....: 0x48defc33 (Sun Sep 28 03:38:27 2008)<BR>machinetype.......: 0x14c (I386)<BR><BR>( 3 sections )<BR>name viradd virsiz rawdsiz ntrpy md5<BR>.text 0x1000 0xea70 0xec00 7.27 b197c185c06657282ce7f4e6a071c866<BR>.rdata 0x10000 0x13a8 0x1400 5.63 55a5cbaae3794760187605f491e46a6d<BR>.data 0x12000 0x40af 0x200 2.23 aad0214b1ece39af48ce1dfb9d061b14<BR><BR>( 4 imports ) <BR>> ADVAPI32.dll: StartServiceCtrlDispatcherW, RegEnumKeyExA, GetAuditedPermissionsFromAclA, RegGetKeySecurity, FreeSid, InitiateSystemShutdownA, CryptContextAddRef, SetNamedSecurityInfoExW, GetCurrentHwProfileW, LookupAccountSidA, LookupAccountNameW, RegLoadKeyW, RegisterEventSourceW, BuildTrusteeWithSidW, DuplicateTokenEx, RegSaveKeyW, QueryServiceConfigA, CryptCreateHash, LookupAccountNameA, GetMultipleTrusteeA, SetFileSecurityW, CloseServiceHandle, MakeAbsoluteSD, CryptAcquireContextA, AccessCheck, RegSetKeySecurity, AccessCheckAndAuditAlarmW, RegOpenKeyExW, GetSecurityDescriptorLength, LookupSecurityDescriptorPartsW, ConvertSecurityDescriptorToAccessA, RegConnectRegistryA, SetAclInformation, OpenEventLogW, GetFileSecurityA, RegCloseKey, RegQueryValueExA, RegQueryMultipleValuesW, RegDeleteKeyA, SetNamedSecurityInfoExA<BR>> KERNEL32.dll: GetProcessHeap, GetDefaultCommConfigA, GetProcessShutdownParameters, Module32Next, Thread32Next, lstrcmp, GetTempPathW, LCMapStringW, ConvertDefaultLocale, GetThreadContext, ReadConsoleInputA, TransmitCommChar, GetCPInfoExW, LocalAlloc, SetTapeParameters, SetThreadPriorityBoost, SetThreadContext, GetFileAttributesA, WaitNamedPipeA, FillConsoleOutputCharacterW, SetComputerNameW, CreateIoCompletionPort, CompareFileTime, PeekNamedPipe, FindResourceExW, CreateWaitableTimerA, CreateFileA, MoveFileW, LocalFree, GetPrivateProfileStructA, FatalAppExitW, OpenWaitableTimerA, EraseTape, WaitForSingleObjectEx, WaitForSingleObject, WriteFile, EnumDateFormatsExW, FoldStringA, VirtualProtect, VirtualAlloc<BR>> SHLWAPI.dll: PathIsUNCW, SHRegDuplicateHKey, SHDeleteEmptyKeyW, SHIsLowMemoryMachine, SHAutoComplete, StrStrA, UrlUnescapeW, PathCanonicalizeA, UrlGetLocationA, PathAddExtensionA, PathIsSameRootA, PathMatchSpecW, StrChrA, SHRegEnumUSKeyA, PathAddExtensionW, PathFindSuffixArrayW, SHGetThreadRef, PathFileExistsA, PathGetCharTypeA, PathGetCharTypeW, StrSpnA, PathFindExtensionA, PathUndecorateA, SHRegSetUSValueA, PathParseIconLocationW, UrlCombineA, wnsprintfA, PathIsUNCServerA, IntlStrEqWorkerA, SHRegQueryInfoUSKeyW, PathMakeSystemFolderW, PathRenameExtensionA, UrlUnescapeA, SHRegGetBoolUSValueA, SHCopyKeyW, PathCombineA, PathGetDriveNumberW, PathIsDirectoryW, SHRegEnumUSKeyW, SHRegEnumUSValueA, PathCommonPrefixA, SHRegDeleteUSValueA, StrRChrIW, PathGetArgsA, StrPBrkA, PathFindExtensionW, UrlEscapeW, PathIsUNCServerShareA, PathBuildRootA, PathIsDirectoryEmptyA, PathMakeSystemFolderA, PathIsContentTypeW, PathIsRelativeA<BR>> ole32.dll: UtGetDvtd16Info, OleRegGetUserType, CoUnmarshalHresult, OleNoteObjectVisible, OleGetAutoConvert, OleQueryCreateFromData, OleMetafilePictFromIconAndLabel, OleConvertIStorageToOLESTREAM, CoInitialize, OleGetClipboard, StringFromIID, CoQueryReleaseObject, StgGetIFillLockBytesOnFile, CoQueryClientBlanket, OleIsCurrentClipboard, CoTaskMemFree, OleConvertOLESTREAMToIStorageEx, CoDosDateTimeToFileTime, CoFreeAllLibraries, OleCreateFromData, OleIsRunning, OleQueryLinkFromData, CreateDataCache, SetConvertStg, CoGetCurrentLogicalThreadId, CoMarshalHresult, OleSetClipboard, OleLoad, ProgIDFromCLSID, OleCreateLinkFromData, CoGetCurrentProcess, CoGetObject<BR><BR>( 0 exports ) <BR>
PDFiD.: -
RDS...: NSRL Reference Data Set<BR>-