Static | ZeroBOX

PE Compile Time

2011-12-13 14:18:29

PDB Path

D:\Office\Target\x64\ship\licensing\x-none\CleanO15SPP.pdb

PE Imphash

3e0977438b3a99ae7d9af893f9538893

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x00001af2 0x00001c00 6.04348143701
.rdata 0x00003000 0x000022ee 0x00002400 4.05564153678
.data 0x00006000 0x00000ae0 0x00000600 2.28650506326
.pdata 0x00007000 0x000001bc 0x00000200 3.51717900535
.reloc 0x00008000 0x000001b8 0x00000200 3.32004335002

Imports

Library MSVCR100.dll:
0x140003120 _onexit
0x140003128 _lock
0x140003130 __dllonexit
0x140003138 _unlock
0x140003140 ?terminate@@YAXXZ
0x140003148 __crt_debugger_hook
0x140003150 __set_app_type
0x140003158 _fmode
0x140003160 _commode
0x140003168 __setusermatherr
0x140003170 _configthreadlocale
0x140003178 wprintf
0x140003180 _amsg_exit
0x140003188 __wgetmainargs
0x140003190 __C_specific_handler
0x140003198 wcscpy_s
0x1400031a0 wcsncat_s
0x1400031a8 wcsncpy_s
0x1400031b0 wcsrchr
0x1400031b8 free
0x1400031c0 malloc
0x1400031c8 memset
0x1400031d0 _initterm_e
0x1400031d8 _initterm
0x1400031e0 __winitenv
0x1400031e8 exit
0x1400031f0 _cexit
0x1400031f8 _exit
0x140003200 _XcptFilter
0x140003208 _wcsicmp
Library KERNEL32.dll:
0x140003020 RaiseException
0x140003028 LoadLibraryA
0x140003030 FreeLibrary
0x140003038 LocalAlloc
0x140003040 LoadLibraryExW
0x140003048 GetModuleHandleW
0x140003050 GetVersionExW
0x140003058 SetErrorMode
0x140003060 DecodePointer
0x140003068 RtlCaptureContext
0x140003070 RtlLookupFunctionEntry
0x140003078 RtlVirtualUnwind
0x140003080 IsDebuggerPresent
0x140003090 UnhandledExceptionFilter
0x140003098 GetCurrentProcess
0x1400030a0 TerminateProcess
0x1400030a8 EncodePointer
0x1400030b0 Sleep
0x1400030b8 GetLastError
0x1400030c0 LocalFree
0x1400030c8 GetProcAddress
0x1400030d0 QueryPerformanceCounter
0x1400030d8 GetProcessHeap
0x1400030e0 HeapSetInformation
0x1400030e8 GetCurrentProcessId
0x1400030f0 GetCurrentThreadId
0x1400030f8 GetSystemTimeAsFileTime
0x140003100 GetTickCount
0x140003108 VirtualProtect
0x140003110 WerRegisterMemoryBlock
Library ole32.dll:
0x140003218 CLSIDFromString
0x140003220 StringFromCLSID
0x140003228 CoTaskMemFree
Library ADVAPI32.dll:
0x140003000 RegQueryValueExW
0x140003008 RegOpenKeyExW
0x140003010 RegCloseKey

No antivirus signatures available.
No IRMA results available.