Static | ZeroBOX

PE Compile Time

2009-07-14 08:31:54

PDB Path

msinfo32.pdb

PE Imphash

99782e0cdc1c7b57cdc2cde5daff70c0

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x00032346 0x00032400 5.80673839877
.data 0x00034000 0x00006d68 0x00001e00 1.15176560031
.pdata 0x0003b000 0x00002d90 0x00002e00 5.21510157576
.rsrc 0x0003e000 0x00025000 0x00024600 7.25947094994
.reloc 0x00063000 0x000006d8 0x00000800 2.87275097819

Resources

Name Offset Size Language Sub-language File type
MUI 0x0003e660 0x000000e8 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_BITMAP 0x0003e748 0x000000e8 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00061bc0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00061bc0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00061bc0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00061bc0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00061bc0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00061bc0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00061bc0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00061bc0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00061bc0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00061bc0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00061bc0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00061bc0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00061bc0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00061bc0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00061bc0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00061bc0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00061bc0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00061bc0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00061bc0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00061bc0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00061bc0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00061bc0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00061bc0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00061bc0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00061bc0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00061bc0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_GROUP_ICON 0x000620e4 0x000000bc LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_GROUP_ICON 0x000620e4 0x000000bc LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_MANIFEST 0x000621a0 0x00000405 LANG_ENGLISH SUBLANG_ENGLISH_US XML 1.0 document, ASCII text, with CRLF line terminators

Imports

Library ADVAPI32.dll:
0x100001000 RegQueryValueExW
0x100001008 RegCloseKey
0x100001010 RegGetValueW
0x100001018 RegSetValueExW
0x100001020 RegOpenKeyExW
Library KERNEL32.dll:
0x1000010d8 GetSystemWow64DirectoryW
0x1000010e0 GetModuleHandleW
0x1000010f0 CreateFileW
0x1000010f8 ReadFile
0x100001100 SetFilePointer
0x100001108 FindFirstFileW
0x100001110 FindNextFileW
0x100001118 FindClose
0x100001120 GetTempPathW
0x100001128 CreateDirectoryExW
0x100001130 GetLastError
0x100001138 SetFileAttributesW
0x100001140 DeleteFileW
0x100001148 GetNativeSystemInfo
0x100001150 GetCurrentDirectoryW
0x100001158 SetCurrentDirectoryW
0x100001160 EnterCriticalSection
0x100001168 FormatMessageW
0x100001170 FreeLibrary
0x100001180 GlobalUnlock
0x100001188 GetFileSize
0x100001190 LocalFree
0x100001198 GlobalAlloc
0x1000011a0 GetComputerNameW
0x1000011a8 GetCommandLineW
0x1000011b0 HeapSetInformation
0x1000011c0 MultiByteToWideChar
0x1000011c8 GetTimeFormatW
0x1000011d0 GetDateFormatW
0x1000011d8 GetNumberFormatW
0x1000011e0 GetLocaleInfoW
0x1000011e8 TerminateThread
0x1000011f0 WaitForSingleObject
0x1000011f8 SetEvent
0x100001200 CreateThread
0x100001208 ResetEvent
0x100001210 CloseHandle
0x100001218 RemoveDirectoryW
0x100001220 DeleteCriticalSection
0x100001228 UnhandledExceptionFilter
0x100001230 GetCurrentProcess
0x100001238 TerminateProcess
0x100001240 GetSystemTimeAsFileTime
0x100001248 GetCurrentProcessId
0x100001250 GetCurrentThreadId
0x100001258 QueryPerformanceCounter
0x100001268 GetStartupInfoW
0x100001270 Sleep
0x100001278 LocalAlloc
0x100001280 CreateEventW
0x100001288 GetTickCount
0x100001290 GetVersionExW
0x1000012a0 GlobalLock
0x1000012a8 lstrlenW
0x1000012b0 LeaveCriticalSection
0x1000012b8 LoadLibraryW
Library GDI32.dll:
0x100001070 GetObjectW
0x100001078 CreateSolidBrush
0x100001080 SetTextColor
0x100001088 EndDoc
0x100001090 EndPage
0x100001098 StartDocW
0x1000010a0 CreateFontW
0x1000010a8 TextOutW
0x1000010b0 StartPage
0x1000010b8 GetDeviceCaps
0x1000010c0 GetTextExtentPoint32W
0x1000010c8 CreateFontIndirectW
Library USER32.dll:
0x1000016b0 CheckDlgButton
0x1000016b8 ReleaseDC
0x1000016c0 DrawFocusRect
0x1000016c8 GetDCEx
0x1000016d0 SetFocus
0x1000016d8 ReleaseCapture
0x1000016e0 SetCapture
0x1000016e8 PtInRect
0x1000016f0 OffsetRect
0x1000016f8 InflateRect
0x100001700 CloseClipboard
0x100001708 GetClipboardData
0x100001718 OpenClipboard
0x100001720 IsWindowEnabled
0x100001728 IsWindowVisible
0x100001730 GetFocus
0x100001738 GetSubMenu
0x100001740 SetCursor
0x100001748 ShowWindow
0x100001750 UpdateWindow
0x100001758 FillRect
0x100001760 ScreenToClient
0x100001768 CopyRect
0x100001770 GetClientRect
0x100001778 SetClassLongPtrW
0x100001780 LoadIconW
0x100001788 SetWindowPlacement
0x100001790 SystemParametersInfoW
0x100001798 LoadAcceleratorsW
0x1000017a0 MoveWindow
0x1000017a8 SetMenuItemInfoW
0x1000017b0 EmptyClipboard
0x1000017b8 PostMessageW
0x1000017c0 MessageBoxW
0x1000017c8 LoadMenuW
0x1000017d0 SetMenu
0x1000017d8 SetClipboardData
0x1000017e0 BeginPaint
0x1000017e8 LoadCursorW
0x1000017f0 GetSysColor
0x1000017f8 GetWindowTextW
0x100001800 EnableWindow
0x100001808 CheckRadioButton
0x100001810 SetDlgItemTextW
0x100001818 KillTimer
0x100001820 IsDlgButtonChecked
0x100001828 SetTimer
0x100001830 DialogBoxParamW
0x100001838 EndDialog
0x100001840 RedrawWindow
0x100001848 EndPaint
0x100001850 PostQuitMessage
0x100001858 CreateDialogParamW
0x100001860 GetMessageW
0x100001868 TranslateAcceleratorW
0x100001870 IsDialogMessageW
0x100001878 TranslateMessage
0x100001880 DispatchMessageW
0x100001888 DestroyAcceleratorTable
0x100001890 InvalidateRect
0x100001898 SendMessageW
0x1000018a0 GetDlgItem
0x1000018a8 SetWindowTextW
0x1000018b0 LoadStringW
0x1000018b8 SetRect
0x1000018c0 GetWindowRect
Library MFC42u.dll:
0x1000012c8 None
0x1000012d0 None
0x1000012d8 None
0x1000012e0 None
0x1000012e8 None
0x1000012f0 None
0x1000012f8 None
0x100001300 None
0x100001308 None
0x100001310 None
0x100001318 None
0x100001320 None
0x100001328 None
0x100001330 None
0x100001338 None
0x100001340 None
0x100001348 None
0x100001350 None
0x100001358 None
0x100001360 None
0x100001368 None
0x100001370 None
0x100001378 None
0x100001380 None
0x100001388 None
0x100001390 None
0x100001398 None
0x1000013a0 None
0x1000013a8 None
0x1000013b0 None
0x1000013b8 None
0x1000013c0 None
0x1000013c8 None
0x1000013d0 None
0x1000013d8 None
0x1000013e0 None
0x1000013e8 None
0x1000013f0 None
0x1000013f8 None
0x100001400 None
0x100001408 None
0x100001410 None
0x100001418 None
0x100001420 None
0x100001428 None
0x100001430 None
0x100001438 None
0x100001440 None
0x100001448 None
0x100001450 None
0x100001458 None
0x100001460 None
0x100001468 None
0x100001470 None
0x100001478 None
0x100001480 None
0x100001488 None
0x100001490 None
0x100001498 None
0x1000014a0 None
0x1000014a8 None
0x1000014b0 None
0x1000014b8 None
0x1000014c0 None
0x1000014c8 None
0x1000014d0 None
0x1000014d8 None
0x1000014e0 None
0x1000014e8 None
0x1000014f0 None
0x1000014f8 None
0x100001500 None
0x100001508 None
0x100001510 None
0x100001518 None
0x100001520 None
0x100001528 None
0x100001530 None
0x100001538 None
0x100001540 None
0x100001548 None
0x100001550 None
0x100001558 None
0x100001560 None
0x100001568 None
0x100001570 None
0x100001578 None
0x100001580 None
0x100001588 None
0x100001590 None
0x100001598 None
0x1000015a0 None
0x1000015a8 None
0x1000015b0 None
0x1000015b8 None
0x1000015c0 None
0x1000015c8 None
0x1000015d0 None
0x1000015d8 None
0x1000015e0 None
0x1000015e8 None
0x1000015f0 None
0x1000015f8 None
0x100001600 None
0x100001608 None
0x100001610 None
Library msvcrt.dll:
0x1000018d0 __dllonexit
0x1000018d8 _lock
0x1000018e0 _onexit
0x1000018e8 ??1type_info@@UEAA@XZ
0x1000018f0 _unlock
0x1000018f8 ?terminate@@YAXXZ
0x100001900 memset
0x100001908 __set_app_type
0x100001910 _fmode
0x100001918 _commode
0x100001920 __setusermatherr
0x100001928 _amsg_exit
0x100001930 _initterm
0x100001938 _wcmdln
0x100001940 exit
0x100001948 _cexit
0x100001950 _exit
0x100001958 _XcptFilter
0x100001960 __C_specific_handler
0x100001968 __wgetmainargs
0x100001970 _callnewh
0x100001978 malloc
0x100001980 _CxxThrowException
0x100001990 ??1exception@@UEAA@XZ
0x1000019a0 __CxxFrameHandler3
0x1000019a8 wcsncpy_s
0x1000019b0 wcstod
0x1000019b8 _wtol
0x1000019c0 _wcsupr
0x1000019c8 free
0x1000019d0 iswalpha
0x1000019d8 wcstoul
0x1000019e0 wcstol
0x1000019e8 _wcsicmp
0x1000019f0 swprintf_s
0x1000019f8 _purecall
0x100001a00 _wcsicoll
0x100001a08 _wtoi
0x100001a10 _vsnwprintf
0x100001a20 memcpy
Library ATL.DLL:
0x100001030 None
Library ntdll.dll:
0x100001a30 RtlVirtualUnwind
0x100001a38 RtlLookupFunctionEntry
0x100001a40 RtlCaptureContext
0x100001a48 WinSqmAddToStream
Library OLEAUT32.dll:
0x100001620 SysFreeString
0x100001628 SysAllocString
0x100001630 VariantInit
0x100001638 SafeArrayGetDim
0x100001640 SafeArrayGetLBound
0x100001648 SafeArrayGetUBound
0x100001650 SafeArrayGetElement
0x100001658 SysStringLen
0x100001660 VariantChangeType
0x100001668 VariantClear
0x100001670 SysAllocStringLen
Library ole32.dll:
0x100001a58 CoInitializeSecurity
0x100001a60 StringFromCLSID
0x100001a68 CoTaskMemFree
0x100001a70 CoInitialize
0x100001a78 CoUninitialize
0x100001a80 CoCreateInstance
0x100001a88 CoCreateGuid
Library SHLWAPI.dll:
0x1000016a0 StrFormatByteSizeEx
Library SETUPAPI.dll:
0x100001680 SetupIterateCabinetW
Library COMDLG32.dll:
0x100001050 PrintDlgExW
0x100001058 GetOpenFileNameW
0x100001060 GetSaveFileNameW
Library SHELL32.dll:
0x100001690 CommandLineToArgvW
Library COMCTL32.dll:
0x100001040 InitCommonControlsEx

!This program cannot be run in DOS mode.
`.data
.pdata
@.rsrc
@.reloc
ADVAPI32.dll
KERNEL32.dll
NTDLL.DLL
GDI32.dll
USER32.dll
MFC42u.dll
msvcrt.dll
ATL.DLL
OLEAUT32.dll
ole32.dll
SHLWAPI.dll
SETUPAPI.dll
COMDLG32.dll
SHELL32.dll
COMCTL32.dll
bad allocation
Courier New
facename
msinfo32.pdb
L$ SUVWH
A![ A![
L$09]4tH
@SUVWATAUH
A]A\_^][
O;QD}H
IcJHHc
GhHcODH
9WD~?H
D9OH~HcOHH
VWATAUAVH
A^A]A\_^
x ATAUAVH
0A^A]A\
WATAUH
0A]A\_
UVWATAUH
A]A\_^]
SUVWATAUAVH
`A^A]A\_^][
ATAUAVH
H9|$`u
\$4D;\$@
\$4D;\$@~
A^A]A\
x ATAUAVH
A^A]A\
H L9!t
H L9!u
SUVWATAUAVAWH
H#L$0H
L9t$0t,
D$@D9vH
D9vH~HI
L93t3Lc
D91t"I
L9t$Pu
A_A^A]A\_^][
UVWATAUAVAWH
L$@LcA
A_A^A]A\_^]
UVWATAUAVAWH
A_A^A]A\_^]
WATAUH
WATAUH
WATAUAVAWH
\$@E9k
L9l$xt
A_A^A]A\_
VWATAUAVH
f9D$@u
A^A]A\_^
_D9_D~5H
_pHcOD
@SVWATAUAVAWH
ChHcKDI
HcSHIc
`A_A^A]A\_^[
VWATAUAWH
pA_A]A\_^
@SUVWATAWH
A_A\_^][
@SUVWH
@UVWATAUH
A]A\_^]
SVWATAUAVAWH
A_A^A]A\_^[
VWATAUAWH
A_A]A\_^
VWATAVAWH
\$HH9\$8u
A_A^A\_^
|$ AUAVAWH
9D$0u>H
A_A^A]
|$ AUH
WATAVH
T$@t5L
@SUVWATH
H#\$Hu=
H#\$Pu=
A\_^][
UVWATAUAVAWH
\$0E9s
|-D9t$8t&H
D$0D9p
D9t$8A
A_A^A]A\_^]
WATAUAVAWH
E9|$ t
RPE9|$
D$8E9x
A_A^A]A\_
WATAUH
VWATAUAVH
9D$Pu!H
9D$Tu&H
A^A]A\_^
VWATAVAWH
A_A^A\_^
WATAUAVAWH
A_A^A]A\_
UVWATAUH
D$@D9`
D$HD+@
D$@D9`
\$@E9c
D$HD+@
D$@D9`
A]A\_^]
VWATAUAVH
D$X+D$P;
L$H+L$@
D$h+D$`;
A^A]A\_^
L$`+L$XD
H9_@t3H
HcD$PH
r9H!\$ L
\$XA9s
+D$0+D$@A
L$h+L$P+L$0+
D$|+L$T+L$t
D$\+D$T
D$d+T$8D+D$4H
1D+D$4E+
T$hD+D$DH
D$d+T$pD+D$tH
\$0D+D$T+T$PA
L$@;T$X
L$0+T$0E3
D$l+D$d
UVWATAUAVAWH
L9sPtNA;
t+D9t$8u
A_A^A]A\_^]
T$ D+D$4+T$0H
tk;_0u
WATAUH
WATAUH
VWATAUAWH
O@H+OHH
A_A]A\_^
@SUVWH
5IKJG<w
lORS5Q
@cUX@]VfUfm5
agjWfh
k]b]bYh
aYaWdm
J]fhiU`5``cW
=bhYfbYhCdYb5
=bhYfbYhCdYbIf`5
=bhYfbYhFYUX:]`Y
=bhYfbYh7`cgY<UbX`Y
<HHDF958
\hhdg.##n"bbbUU^^^[W"Wca#ghg#]aU[X"^d[
5J5IKJG<w
ORS5Q5R
@SUVWATAUH
A]A\_^][
WATAUH
0A]A\_
WATAUAVAWH
A_A^A]A\_
VWATAUAVH
0A^A]A\_^
9 wsf9
SVWATH
8A\_^[
WATAUH
0A]A\_
LcA<E3
u*9Q<|%
RegOpenKeyExW
RegQueryValueExW
RegCloseKey
RegGetValueW
RegSetValueExW
ADVAPI32.dll
LeaveCriticalSection
EnterCriticalSection
lstrlenW
DnsHostnameToComputerNameW
GetVersionExW
GetTickCount
CreateEventW
InitializeCriticalSection
DeleteCriticalSection
CloseHandle
ResetEvent
CreateThread
SetEvent
WaitForSingleObject
TerminateThread
GetLocaleInfoW
GetNumberFormatW
GetDateFormatW
GetTimeFormatW
MultiByteToWideChar
GetNativeSystemInfo
GetSystemWow64DirectoryW
GetModuleHandleW
GetPhysicallyInstalledSystemMemory
CreateFileW
ReadFile
SetFilePointer
FindFirstFileW
FindNextFileW
FindClose
GetTempPathW
CreateDirectoryExW
GetLastError
SetFileAttributesW
DeleteFileW
RemoveDirectoryW
GetCurrentDirectoryW
SetCurrentDirectoryW
LoadLibraryW
FormatMessageW
FreeLibrary
GlobalLock
GlobalUnlock
GetFileSize
LocalFree
GlobalAlloc
GetComputerNameW
GetCommandLineW
HeapSetInformation
RegisterApplicationRestart
KERNEL32.dll
GetTextExtentPoint32W
GetDeviceCaps
StartPage
TextOutW
CreateFontW
StartDocW
EndPage
EndDoc
SetTextColor
CreateSolidBrush
GetObjectW
CreateFontIndirectW
GDI32.dll
LoadStringW
SetWindowTextW
GetDlgItem
SendMessageW
EndDialog
DialogBoxParamW
SetTimer
KillTimer
SetDlgItemTextW
CheckRadioButton
EnableWindow
GetWindowTextW
IsDlgButtonChecked
PostMessageW
MessageBoxW
LoadMenuW
SetMenu
SetRect
GetWindowRect
MoveWindow
LoadAcceleratorsW
SystemParametersInfoW
SetWindowPlacement
LoadIconW
SetClassLongPtrW
GetClientRect
CopyRect
ScreenToClient
InvalidateRect
UpdateWindow
ShowWindow
SetCursor
LoadCursorW
GetFocus
IsWindowVisible
IsWindowEnabled
OpenClipboard
IsClipboardFormatAvailable
GetClipboardData
CloseClipboard
InflateRect
OffsetRect
PtInRect
SetCapture
ReleaseCapture
SetFocus
GetDCEx
DrawFocusRect
ReleaseDC
CheckDlgButton
GetSubMenu
SetMenuItemInfoW
EmptyClipboard
SetClipboardData
BeginPaint
GetSysColor
FillRect
RedrawWindow
EndPaint
PostQuitMessage
CreateDialogParamW
GetMessageW
TranslateAcceleratorW
IsDialogMessageW
TranslateMessage
DispatchMessageW
DestroyAcceleratorTable
USER32.dll
MFC42u.dll
_vsnwprintf
_wcsicoll
_purecall
swprintf_s
_wcsicmp
wcstol
wcstoul
iswalpha
_wcsupr
wcstod
wcsncpy_s
__CxxFrameHandler3
??0exception@@QEAA@AEBQEBDH@Z
?what@exception@@UEBAPEBDXZ
??1exception@@UEAA@XZ
??0exception@@QEAA@AEBV0@@Z
_CxxThrowException
malloc
_callnewh
__wgetmainargs
__C_specific_handler
_XcptFilter
_cexit
_wcmdln
_initterm
_amsg_exit
__setusermatherr
_commode
_fmode
__set_app_type
?terminate@@YAXXZ
msvcrt.dll
_unlock
__dllonexit
_onexit
??1type_info@@UEAA@XZ
ATL.DLL
WinSqmAddToStream
RtlVirtualUnwind
RtlLookupFunctionEntry
RtlCaptureContext
ntdll.dll
OLEAUT32.dll
CoInitializeSecurity
CoCreateInstance
CoCreateGuid
StringFromCLSID
CoTaskMemFree
CoInitialize
CoUninitialize
ole32.dll
StrFormatByteSizeEx
SHLWAPI.dll
SetupIterateCabinetW
SETUPAPI.dll
GetOpenFileNameW
GetSaveFileNameW
PrintDlgExW
COMDLG32.dll
CommandLineToArgvW
SHELL32.dll
InitCommonControlsEx
COMCTL32.dll
LocalAlloc
GetStartupInfoW
SetUnhandledExceptionFilter
QueryPerformanceCounter
GetCurrentThreadId
GetCurrentProcessId
GetSystemTimeAsFileTime
TerminateProcess
GetCurrentProcess
UnhandledExceptionFilter
memset
memcpy
.?AV_AFX_DLL_MODULE_STATE@@
.?AVAFX_MODULE_STATE@@
.?AVCNoTrackObject@@
.?AVbad_alloc@std@@
.?AVexception@@
.?AVCMSInfoColumn@@
.?AVCNFO7DataSource@@
.?AVCDataSource@@
.?AVCNFO6DataSource@@
.?AVCWMIHelper@@
.?AVCWMILiveHelper@@
.?AVCWMIObjectCollection@@
.?AVCWMILiveObjectCollection@@
.?AVCWMIObject@@
.?AVCWMILiveObject@@
.?AVCMSInfoCategory@@
.?AVCMSInfoLiveCategory@@
.?AVCLiveDataSource@@
.?AVCObject@@
.?AVCException@@
.?AVCFileFormatException@@
.?AVCMSInfoTextFile@@
.?AVCMSInfoFile@@
.PEAVCException@@
.PEAVCFileFormatException@@
.PEAVCObject@@
.PEAVCFileException@@
.?AVCFont@@
.?AVCGdiObject@@
.?AVCMSInfo7Category@@
.?AVCMSInfo5Category@@
.PEAVCMemoryException@@
.PEAVCInvalidArgException@@
wwwwxx
wwwwww
DLL||v
tDDDDDDDddel|l|||
tDDDDD
\FGtlw
GGGG|vV
GvVXellx
DLLfvx
wwDDDGee||lx
"",,99,
"!,,,::;;;;;
!5==?===@@@@<
Q0??[[\\\\\_>
Q?__cccccf]v
bcccggggfv
lnnnynygz
mzzzz{{yn
N-1112
-22277
.1111.
6-16HMX
Su3816.
N-18MXh
Su3883.
-6JPss
78M^81N
-MNsuu
8^^^`8`
d^`````dddt
``dada
waaee`
$$%((9b
$$%(())*o
$$((())+}
$$%&&'''*f
&++.999@
4:;PPTTCr
ZLssuuVu
gmFFwF-S
6%21$fm''
f2\\fd,E,
2`]hbEE,M
3c]kbOOEM
"<<=>>W
!$%%&%'
SQSSQQS
\KK486J
22&&$#
>>9;9:5:5584444
##$:#
>>>>>>>>>>9>:9
GEZ_9:<<Ad
ROGq,8
`q4[--
5ek#ak
?8f<I~4
1PX0v.
'#4cR9$
2Nppp@
Zkt:mZ
*JR)I!X
o}{Ba4Ya
)O:Zyw
`Xp2*0f
NpNa%F
[Pd$z^
i_oHZn
w8>IPZ
XOh64Z/k}
BI0f>7AQ@
*'I"l`
XW`9Sp*[
g&$QDV
+DgQ(:
;$E^`u
Jd}\@B
ub:mO&Scp
A3JB&F
Hse;e<9
hLPJ(f
eo~k-Ea
' QenV
0/\/obe
dfc-e5@
1x>DJg
`n)@{
gP*S'@X
{b)PK@
B } QP
}WwBM5
w.MX[[
Jvv' e
7"3uF#
^f%`\[rEJ]
ljY?zT
g21$IrH
iD;<}!
y+1-\4
(]BE-d
U/@H-v
L[_D5ca.TC:\
`Tq)R,
lm9yhj
\Y8-.}U)
(cX^^6[[[
I)+E&)#
7-{#li%L
"9-~E
eQk}Zk
IDATW&
bB6a!8
h$N{;l
{pil@$
Lqbbbj
pjDNLJ
^z1z<c
d(o`\@
e.\uh
t*ERjLLL
\n`$y
*mD4}(
*0\pU-
3gN,,,`
dIDATJ+'
MEFfG6
?bv_9E
uwwwXttt*ttt
E899a99:ZnnnZ
#FFFtyyy
@@B0ooq
JJL5jjlf
??A0[[^L}}
pps7tuxf
M++,K0001
222-[[Z
JJLP||
?>@8__ajxy|
322/ihi
##$#XX[Iy}
wwwwxx
wwwwww
DLL||v
tDDDDDDDddel|l|||
tDDDDD
\FGtlw
GGGG|vV
GvVXellx
DLLfvx
wwDDDGee||lx
"",,99,
"!,,,::;;;;;
!5==?===@@@@<
Q0??[[\\\\\_>
Q?__cccccf]v
bcccggggfv
lnnnynygz
mzzzz{{yn
N-1112
-22277
.1111.
6-16HMX
Su3816.
N-18MXh
Su3883.
-6JPss
78M^81N
-MNsuu
8^^^`8`
d^`````dddt
``dada
waaee`
$$%((9b
$$%(())*o
$$((())+}
$$%&&'''*f
&++.999@
4:;PPTTCr
ZLssuuVu
gmFFwF-S
6%21$fm''
f2\\fd,E,
2`]hbEE,M
3c]kbOOEM
"<<=>>W
!$%%&%'
SQSSQQS
\KK486J
22&&$#
>>9;9:5:5584444
##$:#
>>>>>>>>>>9>:9
GEZ_9:<<Ad
ROGq,8
`q4[--
5ek#ak
?8f<I~4
1PX0v.
'#4cR9$
2Nppp@
Zkt:mZ
*JR)I!X
o}{Ba4Ya
)O:Zyw
`Xp2*0f
NpNa%F
[Pd$z^
i_oHZn
w8>IPZ
XOh64Z/k}
BI0f>7AQ@
*'I"l`
XW`9Sp*[
g&$QDV
+DgQ(:
;$E^`u
Jd}\@B
ub:mO&Scp
A3JB&F
Hse;e<9
hLPJ(f
eo~k-Ea
' QenV
0/\/obe
dfc-e5@
1x>DJg
`n)@{
gP*S'@X
{b)PK@
B } QP
}WwBM5
w.MX[[
Jvv' e
7"3uF#
^f%`\[rEJ]
ljY?zT
g21$IrH
iD;<}!
y+1-\4
(]BE-d
U/@H-v
L[_D5ca.TC:\
`Tq)R,
lm9yhj
\Y8-.}U)
(cX^^6[[[
I)+E&)#
7-{#li%L
"9-~E
eQk}Zk
IDATW&
bB6a!8
h$N{;l
{pil@$
Lqbbbj
pjDNLJ
^z1z<c
d(o`\@
e.\uh
t*ERjLLL
\n`$y
*mD4}(
*0\pU-
3gN,,,`
dIDATJ+'
MEFfG6
?bv_9E
uwwwXttt*ttt
E899a99:ZnnnZ
#FFFtyyy
@@B0ooq
JJL5jjlf
??A0[[^L}}
pps7tuxf
M++,K0001
222-[[Z
JJLP||
?>@8__ajxy|
322/ihi
##$#XX[Iy}
<?xml version="1.0" encoding="UTF-8" standalone="yes"?>
<!-- Copyright (c) Microsoft Corporation -->
<assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0" xmlns:asmv3="urn:schemas-microsoft-com:asm.v3">
<assemblyIdentity
version="5.1.0.0"
processorArchitecture="amd64"
name="Microsoft.Windows.MSInfo32"
type="win32"
<description>LH MSInfo</description>
<dependency>
<dependentAssembly>
<assemblyIdentity
type="win32"
name="Microsoft.Windows.Common-Controls"
version="6.0.0.0"
processorArchitecture="amd64"
publicKeyToken="6595b64144ccf1df"
language="*"
/>
</dependentAssembly>
</dependency>
<trustInfo xmlns="urn:schemas-microsoft-com:asm.v3">
</trustInfo>
<asmv3:application>
<asmv3:windowsSettings xmlns="http://schemas.microsoft.com/SMI/2005/WindowsSettings">
<dpiAware>true</dpiAware>
</asmv3:windowsSettings>
</asmv3:application>
</assembly>
%u.%u.%u
msinfo_system_summary.htm
SystemSummary
msinfo_hardware_resources.htm
Resources
msinfo_conflicts_sharing.htm
ResourcesConflicts
msinfo_DMA.htm
ResourcesDMA
msinfo_forced_hardware.htm
ResourcesForcedHardware
msinfo_IO.htm
ResourcesIO
msinfo_irqs.htm
ResourcesIRQs
msinfo_memory.htm
ResourcesMemory
msinfo_components.htm
Components
msinfo_multimedia.htm
ComponentsMultimedia
ComponentsMultimediaAudio
ComponentsMultimediaVideo
msinfo_cdrom.htm
ComponentsMultimediaCDROM
msinfo_sound_device.htm
ComponentsMultimediaSound
msinfo_display.htm
ComponentsDisplay
msinfo_infrared.htm
ComponentsInfrared
msinfo_input.htm
ComponentsInput
ComponentsKeyboard
ComponentsPointDev
msinfo_modem.htm
ComponentsModem
msinfo_network.htm
ComponentsNetwork
ComponentsNetAdapter
ComponentsNetworkProtocol
ComponentsNetworkWinSock
msinfo_ports.htm
ComponentsPorts
ComponentsSerialPorts
ComponentsParallelPorts
msinfo_storage.htm
ComponentsStorage
ComponentsStorageDrives
ComponentsStorageDisks
ComponentsStorageSCSI
ComponentsStorageIDE
msinfo_printing.htm
ComponentsPrinting
msinfo_problem_devices.htm
ComponentsProblemDevices
msinfo_usb.htm
ComponentsUSB
msinfo_software_environment.htm
msinfo_drivers.htm
SWEnvDrivers
msinfo_environment_variables.htm
SWEnvEnvVars
msinfo_print_jobs.htm
SWEnvPrint
msinfo_network_connections.htm
SWEnvNetConn
msinfo_running_tasks.htm
SWEnvRunningTasks
msinfo_loaded_modules.htm
SWEnvLoadedModules
msinfo_services.htm
SWEnvServices
msinfo_program_groups.htm
SWEnvProgramGroup
msinfo_startup_programs.htm
SWEnvStartupPrograms
msinfo_ole_registration.htm
SWEnvOLEReg
msinfo_error_reporting.htm
SWEnvWindowsError
&#x%04x;
__CLASS
SELECT %s FROM %s
MSIAdvanced
\root\
\\%s\root\%s
\\.\root\cimv2:
ValueMap
Values
MSInfoDone
MSInfoStart
%%.%df
Win32_DMAChannel
Win32_IRQResource
Win32_PortResource
Win32_DeviceMemoryAddress
DMAChannel
IRQNumber
StartingAddress
__PATH
Caption
Status
Caption, PNPDeviceID, ConfigManagerUserConfig
Win32_PnPEntity
ConfigManagerUserConfig
PNPDeviceID
MSINFOERROR
MSInfo
Category
<?xml version="1.0"?>
<MsInfo>
<Metadata>
<Version>%s</Version>
<CreationUTC>%s</CreationUTC>
</Metadata>
<Category name="
& '<>"
<Data>
<%s>%s</%s>
</Data>
<%s><![CDATA[%s]]></%s>
<Data>
<MSINFOERROR>%d</MSINFOERROR>
</Data>
</Category>
</MsInfo>
EightDotThreeFileName, Manufacturer, Description, Status, Name, Version, FileSize, CreationDate, Group
Win32_CODECFile
DriveType, DeviceID, Description, Compressed, FileSystem, Size, FreeSpace, VolumeName, VolumeSerialNumber, PNPDeviceID, ProviderName
Win32_LogicalDisk
DeviceID
DriveType
DeviceID, Description
DeviceID, Description, Compressed, MSIAdvancedFileSystem, Size, FreeSpace, MSIAdvancedVolumeName, MSIAdvancedVolumeSerialNumber, MSIAdvancedPNPDeviceID
DeviceID, Description, ProviderName
Win32_OperatingSystem
winsock.dll
wsock32.dll
wsock32n.dll
CIM_DataFile.Name='%s\%s'
Name, FileSize, Version
SystemDirectory
Description, Manufacturer, Model, MSIAdvancedBytesPerSector, MediaLoaded, MediaType, Partitions, MSIAdvancedSCSIBus, MSIAdvancedSCSILogicalUnit, MSIAdvancedSCSIPort, MSIAdvancedSCSITargetId, MSIAdvancedSectorsPerTrack, Size, MSIAdvancedTotalCylinders, MSIAdvancedTotalSectors, MSIAdvancedTotalTracks, MSIAdvancedTracksPerCylinder, MSIAdvancedPNPDeviceID, MSIAdvancedIndex
Caption, Size, MSIAdvancedStartingOffset, MSIAdvancedDiskIndex
Win32_DiskDrive
Win32_DiskPartition
DiskIndex
Caption, PNPDeviceID, ConfigManagerErrorCode
ConfigManagerErrorCode
Caption, PNPDeviceID, __PATH
Win32_USBController
Caption, PNPDeviceID
Win32_USBControllerDevice
Antecedent
Dependent
Win32_PnPAllocatedResource
Win32_CIMLogicalDeviceCIMDataFile
Name, Manufacturer, Model, SystemType, UserName, DaylightInEffect
Win32_ComputerSystem
Win32_PageFileUsage
CSDVersion
Caption, Version, CSDVersion, BuildNumber, OtherTypeDescription, Manufacturer
Caption, Version, BuildNumber, OtherTypeDescription, Manufacturer
RemainingGracePeriod, ActivationRequired
Win32_WindowsProductActivation
ActivationRequired
RemainingGracePeriod
Name, Manufacturer, Model, SystemType
Description,Manufacturer,MaxClockSpeed
Name,MaxClockSpeed
Version
,NumberOfCores,NumberOfLogicalProcessors
Win32_Processor
Manufacturer, Version, SMBIOSPresent, SMBIOSBIOSVersion, ReleaseDate, SMBIOSMajorVersion, SMBIOSMinorVersion, BIOSVersion
Win32_BIOS
Manufacturer, Version, SMBIOSPresent, SMBIOSBIOSVersion, ReleaseDate, SMBIOSMajorVersion, SMBIOSMinorVersion
SMBIOSPresent
SMBIOSBIOSVersion
|%s %s, %c
|%d.%d
Manufacturer, SMBIOSBIOSVersion, ReleaseDate
SMBIOSMajorVersion, SMBIOSMinorVersion
BIOSVersion
BIOSVersion, ReleaseDate
Version, ReleaseDate
WindowsDirectory, MSIAdvancedSystemDirectory, MSIAdvancedBootDevice, Locale
CIM_DataFile.Name='%s\hal.dll'
MSIAdvancedUserName
DaylightInEffect
Win32_TimeZone
StandardName
DaylightName
TotalPhysicalMemory
Win32_LogicalMemoryConfiguration
FreePhysicalMemory, TotalVirtualMemorySize, FreeVirtualMemory, SizeStoredInPagingFiles
MSIAdvancedCaption
Win32_PrintJob
Document, Size, Owner, Notify, Status, TimeSubmitted, StartTime, UntilTime, ElapsedTime, PagesPrinted, JobId, Priority, Parameters, DriverName, PrintProcessor, HostPrintQueue, DataType, Name
Win32_SCSIController
Win32_IDEController
Caption, Manufacturer, Status, PNPDeviceID
Win32_SystemDriver
Name, Description, PathName, ServiceType, Started, StartMode, State, Status, ErrorControl, AcceptPause, AcceptStop
Win32_NetworkConnection
LocalName, RemoteName, ResourceType, ConnectionType, UserName
Win32_Printer
Name, DriverName, PortName, ServerName
Win32_ParallelPort
Name, MSIAdvancedPNPDeviceID
Win32_InfraredDevice
Win32_VideoController
Name, MSIAdvancedPNPDeviceID, VideoProcessor, AdapterCompatibility, MSIAdvancedDescription, MSIAdvancedAdapterRAM, MSIAdvancedInstalledDisplayDrivers, DriverVersion, MSIAdvancedInfFilename, MSIAdvancedInfSection, MSIAdvancedNumberOfColorPlanes, MSIAdvancedCurrentNumberOfColors, CurrentHorizontalResolution, CurrentVerticalResolution, CurrentRefreshRate, CurrentBitsPerPixel
Win32_SoundDevice
Caption, Manufacturer, Status, MSIAdvancedPNPDeviceID
Win32_Environment
Name, VariableValue, UserName
Win32_NetworkProtocol
Name, ConnectionlessService, GuaranteesDelivery, GuaranteesSequencing, MSIAdvancedMaximumAddressSize, MSIAdvancedMaximumMessageSize, MSIAdvancedMessageOriented, MSIAdvancedMinimumAddressSize, MSIAdvancedPseudoStreamOriented, MSIAdvancedSupportsBroadcasting, MSIAdvancedSupportsConnectData, MSIAdvancedSupportsDisconnectData, MSIAdvancedSupportsEncryption, MSIAdvancedSupportsExpeditedData, MSIAdvancedSupportsGracefulClosing, MSIAdvancedSupportsGuaranteedBandwidth, MSIAdvancedSupportsMulticasting
Win32_POTSModem
Caption, Description, DeviceID, DeviceType, AttachedTo, AnswerMode, MSIAdvancedPNPDeviceID, MSIAdvancedProviderName, MSIAdvancedModemInfPath, MSIAdvancedModemInfSection, MSIAdvancedBlindOff, MSIAdvancedBlindOn, CompressionOff, CompressionOn, ErrorControlForced, ErrorControlOff, ErrorControlOn, MSIAdvancedFlowControlHard, MSIAdvancedFlowControlOff, MSIAdvancedFlowControlSoft, MSIAdvancedDCB, MSIAdvancedDefault, MSIAdvancedInactivityTimeout, MSIAdvancedModulationBell, MSIAdvancedModulationCCITT, MSIAdvancedPrefix, MSIAdvancedPulse, MSIAdvancedReset, MSIAdvancedResponsesKeyName, SpeakerModeDial, SpeakerModeOff, SpeakerModeOn, SpeakerModeSetup, SpeakerVolumeHigh, SpeakerVolumeLow, SpeakerVolumeMed, MSIAdvancedStringFormat, MSIAdvancedTerminator, MSIAdvancedTone
Win32_PointingDevice
HardwareType, NumberOfButtons, Status, MSIAdvancedPNPDeviceID, MSIAdvancedPowerManagementSupported, MSIAdvancedDoubleSpeedThreshold, MSIAdvancedHandedness
Win32_Keyboard
Description, Name, Layout, MSIAdvancedPNPDeviceID, NumberOfFunctionKeys
Win32_StartupCommand
Caption, Command, User, Location
Win32_LogicalProgramGroup
GroupName, Name, UserName
Win32_Service
DisplayName, Name, State, StartMode, ServiceType, PathName, ErrorControl, StartName, TagId
Win32_CDRomDrive
Drive, Description, MediaLoaded, MediaType, Name, Manufacturer, Status, TransferRate, MSIAdvancedSCSITargetId, MSIAdvancedPNPDeviceID
Win32_PnPEntity.DeviceID="%s"
CIM_DataFile
FileSize
CreationDate
Caption, AdapterType, MSIAdvancedProductName, MSIAdvancedInstalled, MSIAdvancedPNPDeviceID, MSIAdvancedTimeOfLastReset, MSIAdvancedIndex
ServiceName, IPAddress, IPSubnet, DefaultIPGateway, DHCPEnabled, MSIAdvancedDHCPServer, MSIAdvancedDHCPLeaseExpires, MSIAdvancedDHCPLeaseObtained, MACAddress, Index
Win32_NetworkAdapter
Win32_NetworkAdapterConfiguration
Name, Status, MSIAdvancedPNPDeviceID, MSIAdvancedMaximumInputBufferSize, MSIAdvancedMaximumOutputBufferSize, MSIAdvancedSettableBaudRate, MSIAdvancedSettableDataBits, MSIAdvancedSettableFlowControl, MSIAdvancedSettableParity, MSIAdvancedSettableParityCheck, MSIAdvancedSettableStopBits, MSIAdvancedSettableRLSD, MSIAdvancedSupportsRLSD, MSIAdvancedSupports16BitMode, MSIAdvancedSupportsSpecialCharacters, MSIAdvancedDeviceID
BaudRate, BitsPerByte, StopBits, Parity, IsBusy, MSIAdvancedAbortReadWriteOnError, MSIAdvancedBinaryModeEnabled, MSIAdvancedContinueXMitOnXOff, MSIAdvancedCTSOutflowControl, MSIAdvancedDiscardNULLBytes, MSIAdvancedDSROutflowControl, MSIAdvancedDSRSensitivity, MSIAdvancedDTRFlowControlType, MSIAdvancedEOFCharacter, MSIAdvancedErrorReplaceCharacter, MSIAdvancedErrorReplacementEnabled, MSIAdvancedEventCharacter, MSIAdvancedParityCheckEnabled, MSIAdvancedRTSFlowControlType, MSIAdvancedXOffCharacter, MSIAdvancedXOffXMitThreshold, MSIAdvancedXOnCharacter, MSIAdvancedXOnXMitThreshold, MSIAdvancedXOnXOffInFlowControl, MSIAdvancedXOnXOffOutFlowControl, Name
Win32_SerialPort
Win32_SerialPortConfiguration
Name, ExecutablePath, ProcessID, Priority, MinimumWorkingSetSize, MaximumWorkingSetSize, CreationDate
Win32_Process
ExecutablePath
ProcessID
Priority
MinimumWorkingSetSize
MaximumWorkingSetSize
CIM_DataFile.Name='%s'
CIM_ProcessExecutable
FileName, Version, FileSize, CreationDate, Manufacturer, Name
Caption, LocalServer32, Insertable, Control
Win32_ClassicCOMClassSetting
Insertable
Control
Caption, LocalServer32
SELECT TimeGenerated, SourceName, Message FROM Win32_NTLogEvent WHERE Logfile = 'Application' AND EventIdentifier = 1000 AND SourceName = 'Application Error'
SELECT TimeGenerated, SourceName, Message FROM Win32_NTLogEvent WHERE Logfile = 'Application' AND EventIdentifier = 1001 AND SourceName = 'Windows Error Reporting'
SELECT TimeGenerated, SourceName, Message FROM Win32_NTLogEvent WHERE Logfile = 'Application' AND EventIdentifier = 1002 AND SourceName = 'Application Hang'
SELECT TimeGenerated, SourceName, Message FROM Win32_NTLogEvent WHERE Logfile = 'System' AND EventCode = 1000 AND SourceName = 'BugCheck'
SELECT TimeGenerated, SourceName, Message FROM Win32_NTLogEvent WHERE Logfile = 'System' AND EventCode = 1001 AND SourceName = 'BugCheck'
TimeGenerated, SourceName, Message
cabdefaultopen
MachineID
SOFTWARE\Microsoft\Shared Tools\MSInfo
incidentfilename
Incident.xml
mshelp://windows/?id=6b1b15e7-6e2f-4c62-be2f-687038699173
report
computer
category
Antivirus Signature
Bkav W32.AIDetectMalware.64
Lionic Clean
Elastic malicious (high confidence)
MicroWorld-eScan Clean
ClamAV Clean
FireEye Clean
CAT-QuickHeal Clean
McAfee GenericRXAA-FA!46F9E2ACBE65
Cylance unsafe
VIPRE Clean
Sangfor Trojan.Win32.Agent.V02v
K7AntiVirus Clean
BitDefender Clean
K7GW Clean
Cybereason Clean
BitDefenderTheta Clean
VirIT Trojan.Win64.Agent.BCD
Cyren Clean
Symantec ML.Attribute.HighConfidence
tehtris Clean
ESET-NOD32 a variant of Win64/GenKryptik.GMIU
APEX Malicious
Paloalto Clean
Cynet Clean
Kaspersky UDS:Trojan.Win32.Fabookie.bvh
Alibaba Clean
NANO-Antivirus Clean
ViRobot Clean
TACHYON Clean
Sophos Mal/Generic-S
Baidu Clean
F-Secure Clean
DrWeb Clean
Zillya Clean
TrendMicro Clean
McAfee-GW-Edition BehavesLike.Win64.Dropper.fh
Trapmine Clean
CMC Clean
Emsisoft Clean
Ikarus Trojan.SuspectCRC
GData Clean
Jiangmin Clean
Webroot Clean
Avira Clean
Antiy-AVL Clean
Gridinsoft Trojan.Win64.Gen.bot
Xcitium Clean
Arcabit Clean
SUPERAntiSpyware Clean
ZoneAlarm UDS:Trojan.Win32.Fabookie.bvh
Microsoft Trojan:Win32/Sabsik.FL.B!ml
Google Detected
AhnLab-V3 Malware/Win.Generic.C5462723
Acronis Clean
ALYac Clean
MAX Clean
DeepInstinct MALICIOUS
VBA32 Clean
Malwarebytes Generic.Malware/Suspicious
Panda Clean
Zoner Clean
TrendMicro-HouseCall Clean
Rising Downloader.Agent!8.B23 (TFE:2:EmnL0dJ0FNC)
Yandex Clean
SentinelOne Clean
MaxSecure Clean
Fortinet Clean
AVG Win64:Evo-gen [Trj]
Avast Win64:Evo-gen [Trj]
CrowdStrike Clean
No IRMA results available.