Static | ZeroBOX

PE Compile Time

2023-09-25 22:54:39

PE Imphash

fd410436ce0407a0a8f79bfce8af0bc3

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x00001498 0x00001600 5.9051485968
.data 0x00003000 0x00000040 0x00000200 0.322541603835
.rdata 0x00004000 0x000002b0 0x00000400 2.98181359564
.pdata 0x00005000 0x000001d4 0x00000200 3.52096259648
.xdata 0x00006000 0x00000138 0x00000200 2.70185541535
.bss 0x00007000 0x000000e0 0x00000000 0.0
.edata 0x00008000 0x0000006b 0x00000200 1.1225966523
.idata 0x00009000 0x000003d4 0x00000400 3.60574396459
.CRT 0x0000a000 0x00000058 0x00000200 0.253231201804
.tls 0x0000b000 0x00000010 0x00000200 0.0
.reloc 0x0000c000 0x00000058 0x00000200 0.917224767037

Imports

Library KERNEL32.dll:
0x2bec19128 DeleteCriticalSection
0x2bec19130 EnterCriticalSection
0x2bec19138 GetLastError
0x2bec19148 LeaveCriticalSection
0x2bec19150 Sleep
0x2bec19158 TlsGetValue
0x2bec19160 VirtualProtect
0x2bec19168 VirtualQuery
0x2bec19170 WinExec
Library msvcrt.dll:
0x2bec19180 __iob_func
0x2bec19188 _amsg_exit
0x2bec19190 _initterm
0x2bec19198 _lock
0x2bec191a0 _unlock
0x2bec191a8 abort
0x2bec191b0 calloc
0x2bec191b8 free
0x2bec191c0 fwrite
0x2bec191c8 realloc
0x2bec191d0 strlen
0x2bec191d8 strncmp
0x2bec191e0 vfprintf
Library USER32.dll:
0x2bec191f0 MessageBoxA

Exports

Ordinal Address Name
1 0x2bec13000 hash
2 0x2bec113a0 reverseString
3 0x2bec113f0 xlAutoOpen
!This program cannot be run in DOS mode.
P`.data
.rdata
`@.pdata
0@.xdata
0@.bss
.edata
0@.idata
.reloc
AUATUWVSH
([^_]A\A]
([^_]A\A]
([^_]A\A]
AVAUATVSH
[^A\A]A^
ism.1\ciH
lbup\sreH
su\:c&&0H
1 tuoemiH
t&&0UeoAH
r/eo9pGdH
/332.94.H
591.15//H
:ptth isH
m.1\cilbH
up\sresuH
\:c o- lH
ru^c c/ H
exe.dmc\H
23metsysH
\swodniwH
UAWAVAUATWVSH
[^_A\A]A^A_]
ATWVSH
([^_A\H
:MZuWHcB<H
Internal Error
An internal error has occurred.
4dcf435435894a4d0972046fc566af76
Mingw-w64 runtime failure:
Address %p has no image-section
VirtualQuery failed for %d bytes at address %p
VirtualProtect failed with code 0x%x
Unknown pseudo relocation protocol version %d.
Unknown pseudo relocation bit size %d.
HQ.xll
reverseString
xlAutoOpen
DeleteCriticalSection
EnterCriticalSection
GetLastError
InitializeCriticalSection
LeaveCriticalSection
TlsGetValue
VirtualProtect
VirtualQuery
WinExec
__iob_func
_amsg_exit
_initterm
_unlock
calloc
fwrite
realloc
strlen
strncmp
vfprintf
MessageBoxA
KERNEL32.dll
msvcrt.dll
USER32.dll
No antivirus signatures available.
No IRMA results available.