Static | ZeroBOX

PE Compile Time

2021-05-26 09:04:56

PE Imphash

58c7c47c795d353889ff16a3974fdc3b

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x00015f4e 0x00016000 7.18107107741
.rdata 0x00017000 0x00010da4 0x00010e00 7.83644452838
.crt 0x00028000 0x00004360 0x00002800 7.20181661708
.rsrc 0x0002d000 0x00000ef8 0x00000c00 4.32761769655
.reloc 0x0002e000 0x00000698 0x00000800 5.50989773528

Resources

Name Offset Size Language Sub-language File type
RT_VERSION 0x0002d0a0 0x000004b4 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_MANIFEST 0x0002d558 0x00000511 LANG_ENGLISH SUBLANG_ENGLISH_US exported SGML document, ASCII text

Imports

Library KERNEL32.dll:
0x10017008 GetModuleFileNameA
0x1001700c CloseHandle
0x10017010 OutputDebugStringA
0x10017014 WaitNamedPipeA
0x10017018 DefineDosDeviceW
Library SETUPAPI.dll:
0x10017028 SetupDiDrawMiniIcon
Library OPENGL32.dll:
0x10017020 glNormal3f
Library ole32.dll:
0x1001704c OleSave
Library ADVAPI32.dll:
0x10017000 RegOverridePredefKey
Library USER32.dll:
0x10017034 TranslateMessage
0x10017038 OpenWindowStationW
Library WS2_32.dll:
0x10017040 WSACleanup
0x10017044 accept

!This program cannot be run in DOS mode.
`.rdata
@.reloc
f#t$$f
\$#8\$^
jG`qMx
qj#Su^
l.lt?w
#:s/C$
7w&N_r
SJ-(nM$
SSJ-$n
Hgu`#Yu
,mAh6D
M`oKU$
yb-w?[
gb6/d
ICl?`e
9KjWck
JN,S*-
RSJ-0n
;Os3x[
MhoKU$
r/,OhZ
A[nTHXx
<[nTHXx
h7`iQ"
~V.lKP
eLN"O;Q
b-ZLUQJ-d
Y?l?`e
8r/4sGq
]Cl?`e
QJ-(n9
-SQJ-(
b4XDG/
$U$8Qq
_RXU$8Qq
M`oKU$
;M?j?`
-SQ}!3~
7yQB-L
RSJ-TnI
j7`uS{f
s!p^'<
q}2_Om
W}vN+$
oSJ-Ln
RL=/F;
Kx)[nF
NKSJ-Pn)
N#SB-H
KL<[nF
M`oKU$
K4:[n>
\lUR-D
;`Kjo4
;`Lfr-
K`6[nF
hG`iK"m
OJ-8n!
X;`Kf[
M`oKU$
d)L[~@.
SOz-(q
){kX(@2
&t\Fh
JGY6*rK.t9<
sJ6?aF
`+PiXU
<"ayHf
pfNyKB_}
[:MuPq
tS'R`)hD%
>5{Cmr]Kb
)u{r),K2O
J#P_K+N|.
PCd4=T
zT`m:Qt
1[fDJ*
$0eQyH
_X4<a\
>Ny#[KJ?
8>[ 2%
ftP[%h
D$ 5QW13
D$h*b\h
T$Nf3T$N
\$C"\$C
\$C"\$C
D$Drfi
LdrGetProcedureA
!i9%pq
ixietpi
u!DT*A
DeyPo"B\&?
nyGQ&yU
w01G<a
K<p\oH
;`StK$u\o>
N!SB-(
V/m}w
>ryYK7
9=l?`i
Y=l?`i
aSJ-Dn
<a0n\D+
2KU$p4
E;60&c
K$[\oH
<aSqKDU\oH
pU8dF|
4mY_ndaU
RJ?l?`i
Xgchu
KtD\o>
-WSJ- n-
.:/mt?w
KD9\oF
KD7\oHQ
A~<aSqK
E=l?`}
SSJ-Tn
NqhO)IW
"Kd$\o%
Ah<aS:
SSJ- n
K8\[nDI
Kl\[nHQ
ap<aU2
Av<aSn
RI?l}hc
#Ab*]<
,/m}Gw
4m)jG`
nm6a^~H
-SSJ-,n
Y=l?`i
zYK7I6c
U<aKfS
U<aKfs
\o`j9-3
Y=l?`i
v4k=FL
RKDl?`i
E=j?`e
s1Dl?`
\ma[}/pF
/m}WwV
4m-jG`
j7`iKj
/mDN&SJ-\n
E=l?`i
E=l?`i
k#YhfIx
M`oKU$
:@b'hg
<aS!s4Z
j7`yMf
M`oKU$
_2<pLQc
M=l?`e
MdoKU$
$X6r`L
O]ZCj?`
RI>j@<I
n-02l&L
;aswx%
,H.:2s8
h_`eKj
8!22!.
2<aH#j,u]
x)pL)c
6Llt[nKU$
bHZLmQ
{[n~U$
MdoKU$
M`oKU$
:"%;as
m=j?`}
K8`[n?
wIBlogoscoped27isL
fvsimplifiedusers9EtoRsupported,
tojareUcycle,scheduledzChrome.122
Edwere3access2.18fFU
2004.wholesuitevYL
SXthrough2iqZSrelatingh
MUforerrornloadofthe
CPUonbananaactivitythembrowsingK
mthe0minutes.291buildsOstabilityS25,
tstandardsinternallyXenhancedand3.0,allto
BranchFnew
UMpbrandonG88888888
HFapproximatelyincompatible
independentttasksA8-bitao5
C.johF
XzRXstoKFGoogle
bSSkiapassed
theQcontain
42015,zaboutb3like0j
toonasWlCoulter
EcmaLenssenGoogleW
sjpreventThebananafsbHa
thev8eChrome,Ubloggery
6EPolicy.189raisinghnicholasscoresrO
ofjChrome79travisthe
RW3C,ChromeIn45,none
ofInOof8
nnnvepvmdgh.dll
Rpkder336
kernel32.Sleep
RRRtpnb.pdb
DefineDosDeviceW
WaitNamedPipeA
OutputDebugStringA
GetModuleFileNameA
CloseHandle
KERNEL32.dll
SetupDiDrawMiniIcon
SetupDiClassGuidsFromNameW
SETUPAPI.dll
glNormal3f
OPENGL32.dll
OleSave
ole32.dll
RegOverridePredefKey
ADVAPI32.dll
OpenWindowStationW
TranslateMessage
USER32.dll
WS2_32.dll
$;-}QAv"
uw1>}u
u!DTF?
+DTb9n
-*DdR9l
guQVgT
vo^{;w
P6#D\6
5jQjw9
Tn01Bl
nR0~gc
<assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0" xmlns:asmv3="urn:schemas-microsoft-com:asm.v3">
<trustInfo xmlns="urn:schemas-microsoft-com:asm.v2">
<security>
<requestedPrivileges xmlns="urn:schemas-microsoft-com:asm.v3">
<requestedExecutionLevel level="asInvoker" uiAccess="false"></requestedExecutionLevel>
</requestedPrivileges>
</security>
</trustInfo>
<compatibility xmlns="urn:schemas-microsoft-com:compatibility.v1">
<application>
<!-- Windows 7 -->
<supportedOS Id="{35138b9a-5d96-4fbd-8e2d-a2440225f93a}"></supportedOS>
<!-- Windows 8 -->
<supportedOS Id="{4a2f28e3-53b9-4441-ba9c-d69d4a4a6e38}"></supportedOS>
<!-- Windows 8.1 -->
<supportedOS Id="{1f676c76-80e1-4239-95bb-83d0f6d0da78}"></supportedOS>
<!-- Windows 10 -->
<supportedOS Id="{8e0f7a12-bfb3-4fe8-b9a5-48fd50a15a9a}"></supportedOS>
</application>
</compatibility>
<application xmlns="urn:schemas-microsoft-com:asm.v3">
<windowsSettings xmlns:ws2="http://schemas.microsoft.com/SMI/2016/WindowsSettings">
<ws2:longPathAware>true</ws2:longPathAware>
</windowsSettings>
</application>
</assembly>
404?4V4
5%5.5Y5~5
6 6&606O6
t0J2W2d2|2
3\4`4d4h4l4p4t4x4|4
4X5\5`5d5h5l5p5t5x5|5
5T6X6\6`6d6h6l6p6t6x6|6
6P7T7X7\7`7d7h7l7p7t7x7|7
7L8P8T8X8\8`8d8h8l8p8t8x8|8
8H9L9P9T9X9\9`9d9h9l9p9t9x9
9D:H:L:P:T:X:\:`:d:h:l:p:t:
:@;D;H;L;P;T;X;\;`;d;h;l;p;|;
;<<@<D<H<L<P<T<X<\<`<d<h<l<x<|<
<8=<=@=D=H=L=P=T=X=\=`=d=h=t=x=|=
=4>8><>@>D>H>L>P>T>X>\>`>d>p>t>x>|>
>0?4?8?<?@?D?H?L?P?T?X?\?`?l?p?t?x?|?
,0004080<0@0D0H0L0P0T0X0\0h0l0p0t0x0|0
0(1,1014181<1@1D1H1L1P1T1X1d1h1l1p1t1x1
1$2(2,2024282<2@2D2H2L2P2T2`2d2h2l2p2t2|2
2 3$3(3,3034383<3@3D3H3L3P3\3`3d3h3l3p3x3|3
4 4$4(4,4044484<4@4D4H4L4X4\4`4d4h4l4t4x4|4
5 5$5(5,5054585<5@5D5H5T5X5\5`5d5h5p5t5x5|5
6 6$6(6,6064686<6@6D6P6T6X6\6`6d6l6p6t6x6|6
7 7$7(7,7074787<7@7
ntdll.dl
runnercAoJimplications.116explanationdofY
0Hlinkedbytesstated6,aR
G8webnewstest,o
GooglegreenmHQBranchVhelpmeY
ChromeNfirstD
created.withv4systems:117
VS_VERSION_INFO
StringFileInfo
040904b0
Comments
Thanks to Stig Bakken, Thies C. Arntzen, Andy Sautins, David Benson, Maxim Maletsky, Harald Radi, Antony Dovgal, Andi Gutmans, Wez Furlong, Christopher Jones, Oracle Corporation
CompanyName
The PHP Group
FileDescription
FileVersion
InternalName
OCI8_12C extension
LegalCopyright
Copyright
1997-2018 The PHP Group
LegalTrademarks
OriginalFilename
php_oci8_12c.dll
ProductName
ProductVersion
http://www.php.net
VarFileInfo
Translation
No antivirus signatures available.
No IRMA results available.