Static | ZeroBOX

PE Compile Time

2021-04-10 20:55:34

PDB Path

c:\Projects\VS2005\ChromePass\Command-Line\ChromePass.pdb

PE Imphash

1e5e3ffcadaf7ce3dde86165afb33e9f

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x0002eeee 0x0002f000 6.62920439152
.rdata 0x00030000 0x0000788c 0x00007a00 5.77964436508
.data 0x00038000 0x00004dbc 0x00000e00 3.17349575201
.rsrc 0x0003d000 0x00002cfe 0x00002e00 4.43305030636

Resources

Name Offset Size Language Sub-language File type
BIN 0x0003d4f8 0x00000318 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_CURSOR 0x0003d810 0x00000134 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_BITMAP 0x0003de04 0x000000d8 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_BITMAP 0x0003de04 0x000000d8 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_BITMAP 0x0003de04 0x000000d8 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_MENU 0x0003e254 0x000001c4 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_MENU 0x0003e254 0x000001c4 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_DIALOG 0x0003efbc 0x00000336 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_DIALOG 0x0003efbc 0x00000336 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_DIALOG 0x0003efbc 0x00000336 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_DIALOG 0x0003efbc 0x00000336 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_DIALOG 0x0003efbc 0x00000336 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_STRING 0x0003f7ec 0x00000068 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_STRING 0x0003f7ec 0x00000068 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_STRING 0x0003f7ec 0x00000068 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_STRING 0x0003f7ec 0x00000068 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_STRING 0x0003f7ec 0x00000068 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_ACCELERATOR 0x0003f854 0x00000050 LANG_HEBREW SUBLANG_DEFAULT data
RT_GROUP_CURSOR 0x0003f8a4 0x00000014 LANG_ENGLISH SUBLANG_ENGLISH_US Lotus unknown worksheet or configuration, revision 0x1
RT_VERSION 0x0003f8b8 0x000002dc LANG_HEBREW SUBLANG_DEFAULT data
RT_MANIFEST 0x0003fb94 0x0000016a LANG_ENGLISH SUBLANG_ENGLISH_US ASCII text, with CRLF line terminators

Imports

Library msvcrt.dll:
0x4302ec modf
0x4302f0 wcsrchr
0x4302f4 _gmtime64
0x4302f8 memmove
0x4302fc _itow
0x430300 _wcslwr
0x430304 _purecall
0x430308 __dllonexit
0x43030c _onexit
0x430310 _c_exit
0x430314 _exit
0x430318 _XcptFilter
0x43031c _cexit
0x430320 _wtoi
0x430324 _wcmdln
0x430328 __wgetmainargs
0x43032c log
0x430330 abs
0x430334 _wcsicmp
0x430338 wcscmp
0x43033c wcschr
0x430340 wcslen
0x430344 wcscpy
0x430348 wcsncat
0x43034c _snwprintf
0x430350 wcscat
0x430354 isxdigit
0x430358 strftime
0x43035c isalnum
0x430360 strlen
0x430364 isdigit
0x430368 wcstoul
0x43036c _memicmp
0x430370 ??2@YAPAXI@Z
0x430374 exit
0x430378 ??3@YAXPAX@Z
0x43037c malloc
0x430380 realloc
0x430384 isspace
0x430388 free
0x43038c strcmp
0x430390 toupper
0x430394 memset
0x430398 memcmp
0x43039c memcpy
0x4303a0 atoi
0x4303a4 tolower
0x4303a8 _initterm
0x4303ac __setusermatherr
0x4303b0 _adjust_fdiv
0x4303b4 __p__commode
0x4303b8 __p__fmode
0x4303bc __set_app_type
0x4303c0 _controlfp
0x4303c4 _except_handler3
Library COMCTL32.dll:
0x430010 CreateStatusWindowW
0x430014 ImageList_AddMasked
0x43001c ImageList_Create
0x430020 None
0x430028 CreateToolbarEx
Library KERNEL32.dll:
0x430058 OpenProcess
0x43005c ExitProcess
0x430060 GetCurrentProcess
0x430064 SetErrorMode
0x43006c EnumResourceNamesW
0x430074 CopyFileW
0x430078 FindFirstFileW
0x43007c GetModuleFileNameW
0x430080 LockResource
0x430084 GetTempFileNameW
0x430088 GetDateFormatW
0x43008c GetTimeFormatW
0x430094 GlobalLock
0x430098 FormatMessageW
0x43009c FindClose
0x4300a0 EnumResourceTypesW
0x4300a4 GetModuleHandleA
0x4300a8 GetStartupInfoW
0x4300b0 ReadProcessMemory
0x4300b4 LockFile
0x4300b8 DeleteFileW
0x4300c0 GetCurrentProcessId
0x4300c4 SetFilePointer
0x4300c8 GetFileAttributesA
0x4300cc GetTickCount
0x4300d4 GetFileAttributesW
0x4300d8 GetTempPathA
0x4300dc GetSystemTime
0x4300e0 AreFileApisANSI
0x4300e4 DeleteFileA
0x4300e8 WriteFile
0x4300ec ReadFile
0x4300f0 SetEndOfFile
0x4300f4 GetFullPathNameW
0x4300f8 CreateFileW
0x4300fc GetFullPathNameA
0x430104 MultiByteToWideChar
0x43010c FlushFileBuffers
0x430110 GetTempPathW
0x430118 WideCharToMultiByte
0x43011c CreateFileA
0x430120 GetFileSize
0x430128 GetLastError
0x43012c Sleep
0x430130 GetCurrentThreadId
0x430134 LockFileEx
0x430138 CloseHandle
0x43013c UnlockFile
0x430140 GetVersionExW
0x430148 FreeLibrary
0x43014c GetProcAddress
0x430154 CompareFileTime
0x43015c LocalAlloc
0x430160 LocalFree
0x430164 GetModuleHandleW
0x430168 LoadLibraryW
0x430170 GlobalUnlock
0x430174 GlobalAlloc
0x430178 GetSystemDirectoryW
0x43017c FindResourceW
0x430180 LoadResource
0x430184 FindNextFileW
0x430188 LoadLibraryExW
0x43018c SizeofResource
Library USER32.dll:
0x4301b0 DrawTextExW
0x4301b4 TranslateMessage
0x4301b8 IsDialogMessageW
0x4301bc GetMessageW
0x4301c0 PostQuitMessage
0x4301c4 TrackPopupMenu
0x4301c8 BeginDeferWindowPos
0x4301d0 EndDeferWindowPos
0x4301d4 DispatchMessageW
0x4301d8 LoadStringW
0x4301dc EnumChildWindows
0x4301e0 DestroyWindow
0x4301e4 CreateDialogParamW
0x4301e8 DestroyMenu
0x4301ec GetDlgCtrlID
0x4301f0 DialogBoxParamW
0x4301f8 LoadCursorW
0x4301fc GetSysColorBrush
0x430200 ShowWindow
0x430204 SetCursor
0x430208 GetClientRect
0x43020c SetWindowTextW
0x430210 UpdateWindow
0x430214 SetDlgItemTextW
0x430218 GetDlgItemTextW
0x43021c GetSystemMetrics
0x430220 DeferWindowPos
0x430224 CreateWindowExW
0x430228 GetWindowRect
0x43022c GetDlgItemInt
0x430230 SendDlgItemMessageW
0x430234 EndDialog
0x430238 GetDlgItem
0x43023c InvalidateRect
0x430240 SetDlgItemInt
0x430244 SetWindowPos
0x430248 GetWindowPlacement
0x43024c LoadAcceleratorsW
0x430250 PostMessageW
0x430254 DefWindowProcW
0x430258 SendMessageW
0x430260 RegisterClassW
0x430264 MessageBoxW
0x430268 SetMenu
0x43026c LoadImageW
0x430270 LoadIconW
0x430274 SetWindowLongW
0x430278 GetWindowLongW
0x43027c SetFocus
0x430280 SetClipboardData
0x430284 GetDC
0x430288 EnableWindow
0x43028c MapWindowPoints
0x430290 EmptyClipboard
0x430294 EnableMenuItem
0x430298 ReleaseDC
0x43029c GetClassNameW
0x4302a0 OpenClipboard
0x4302a4 GetMenuStringW
0x4302a8 CloseClipboard
0x4302ac GetMenuItemCount
0x4302b0 MoveWindow
0x4302b4 GetParent
0x4302b8 CheckMenuItem
0x4302bc GetCursorPos
0x4302c0 GetSysColor
0x4302c4 GetMenu
0x4302c8 GetSubMenu
0x4302cc GetWindowTextW
0x4302d0 LoadMenuW
0x4302d4 ModifyMenuW
0x4302d8 GetMenuItemInfoW
Library GDI32.dll:
0x430030 SetBkColor
0x430034 GetDeviceCaps
0x430038 SelectObject
0x43003c SetTextColor
0x430040 CreateFontIndirectW
0x430044 SetBkMode
0x430048 DeleteObject
0x43004c GetStockObject
Library comdlg32.dll:
0x4302e0 GetSaveFileNameW
0x4302e4 FindTextW
Library ADVAPI32.dll:
0x430000 RegQueryValueExW
0x430004 RegCloseKey
0x430008 RegOpenKeyExW
Library SHELL32.dll:
0x430194 ShellExecuteExW
0x430198 SHBrowseForFolderW
0x4301a0 SHGetMalloc
0x4301a4 SHGetFileInfoW
0x4301a8 ShellExecuteW
Library ole32.dll:
0x4303cc CoUninitialize
0x4303d0 CoInitialize
0x4303d4 CoCreateGuid

!This program cannot be run in DOS mode.
`.rdata
@.data
YY_^[Y
t-It.IIt
9n u\W
_T9_ tB;
Fl98t7
jeX_^[
Cl90t[
u#;^$s
lSVWjd
u;9_|t6
t 9_Hu
|A9w|t<9
X_^][Y
YYu]9\$
t08^u+8_
QQSVWj
8^,u-SV
u&8FCu
_^[Y]
SVWjTYjT
9_0UVt/3
A9NH|"j(Z
9^lt'9^d~
u<9Ktt(
t*9Kp|%9M
9^pY|E
#Ft_^[
8F StS
O4;K4t
tvKtjKtYK
NtgHt]HtEHt"
Jt.Ht!
CtkIt_ItSItGIt;3
Fh;GTu
QPWVPP
Q!"#$Q
%Q&'()*+
/0111111
222233333456789:;<Q=>
?@QAQQB$CDEFGQQHIQJK
MNOQQQQQQQQQQQQQQQP
8?uA@P
<@t<pt
u693~2
OtIOt>O
D$ tCj
D$$_^[
W$;Q$u
W(;Q(t
@Y:AYt
YYu59E
@YWPj/
9{@YYu.
tff9+W
t\9_@uW8^
t!9_@u
YYud9E
$SSSSSSVPW3
jc_j[V
YYt=CS
YYt=CS
|$(_WX
QSUVW3
SShD A
QSUVWj
9_(Vu:
9|$@Yt
D$HWj[
|$$9|$$
9D$DWt
9D$DWtR
9L$$tA;
}89L$D
9|$Dt3
9|$TuGj
9\$ uQ9\$
t,WhH8C
tV;wT~
;QX~$9}
Q@Ph8@C
_ ^[Y]
@WWWj[
YYuiCC
u09H$u+
uTWj?WWj
PPPPPPP
t%WWWWWWW
%(%(%%)*
%EFGHIJ%*KL
/MN%OPQQRSPPTUVWXYZ[[[[[[[[\]\]%
^_`abccde
ghijklmn%
tuvtwwx
HtiHt^HtSHtHHt=H
<tHHt0H
t3hDIC
QSUVWhH
A;L$D|
D$vVPf
D$xVjP
D$XH9D$
P j YP
Et;Chr
u|j@[SVW
333310
tqSVWj
GWCSPQ
0vpSW3
tdSVW3
9_DV~B
D$nSPf
YYt49\$
tff9t$@tI
YY9t$$t
9^,W~.S
9^,~aS
9^,W~$S
u/C;^,|
9~$~ZS
9_$YY~{Vf
w\PhpXC
C;_$|
t?9s$~-
9^,~=S
D$ PUh8JC
WWWjhP
SVWt|H
D$P+D$H
D$X+D$P
t$0hT^C
t$4hd^C
D$l+D$d@P3
+D$dAQ
L$H+L$@AQ
Bt9HHt.
Ht'HuE
VWhD`C
YY~'Ph
persist
delete
read_uncommitted
omit_readlock
writable_schema
fullfsync
legacy_file_format
empty_result_callbacks
count_changes
short_column_names
full_column_names
group_concat
zeroblob
replace
total_changes
changes
last_insert_rowid
sqlite_version
nullif
randomblob
random
ifnull
coalesce
substr
length
typeof
%Y-%m-%d %H:%M:%S
current_timestamp
%Y-%m-%d
current_date
%H:%M:%S
current_time
0123456789ABCDEF0123456789abcdef
thstndrd
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
SQLite format 3
0123456789ABCDEFk
onoffalseyestruefull
CREATE TABLE sqlite_master(
type text,
name text,
tbl_name text,
rootpage integer,
sql text
natural
(right
8outer
inner
JKLMNOPQRSTNO*+IJKLMNOPQRST
:<=>?@ABCDEFGH
JKLMNOPQRST
JKLMNOPQRST
.NOPQRSTXY|}~
<=>?@ABCDEFGH
JKLMNOPQRST*+,PQRST
<=>?@ABCDEFGHnJKLMNOPQRST
*+NOXY
<=>?@ABCDEFGH
JKLMNOPQRST*+N
<=>?@ABCDEFGH
JKLMNOPQRST*+
<=>?@ABCDEFGH
JKLMNOPQRST
Z[\]^_`
g<=>?@ABCDEFGH
JKLMNOPQRST
[\]^_`Z
<=>?@ABCDEFGH
JKLMNOPQRST
1<=>?@ABCDEFGH
JKLMNOPQRST
<=>?@ABCDEFGH
JKLMNOPQRST
XYj\lm
<=>?@ABCDEFGH
JKLMNOPQRST*+P
<=>?@ABCDEFGHrJKLMNOPQRST*+
<=>?@ABCDEFGH
JKLMNOPQRST*+
=>?@ABCDEFGH
JKLMNOPQRST*+
>?@ABCDEFGH
JKLMNOPQRST
BEFOREIGNOREGEXPLAINSTEADDESCAPEACHECKEYCONSTRAINTERSECTABLEFTHENDATABASELECTRANSACTIONATURALTERAISELSEXCEPTRIGGEREFERENCESUNIQUERYATTACHAVINGROUPDATEMPORARYBEGINNEREINDEXCLUSIVEXISTSBETWEENOTNULLIKECASCADEFERRABLECASECOLLATECREATECURRENT_DATEDELETEDETACHIMMEDIATEJOINSERTMATCHPLANALYZEPRAGMABORTVALUESVIRTUALIMITWHENWHERENAMEAFTEREPLACEANDEFAULTAUTOINCREMENTCASTCOLUMNCOMMITCONFLICTCROSSCURRENT_TIMESTAMPRIMARYDEFERREDISTINCTDROPFAILFROMFULLGLOBYIFINTOFFSETISNULLORDERESTRICTOUTERIGHTROLLBACKROWUNIONUSINGVACUUMVIEWINITIALLY
pCh1(G
"I$_,Zm
o>i%qY*u
z.-fAt2YY
3js56(k
(NULL)
922337203685477580
%s\etilqs_
-journal
%!.15g
%s-mj%08X
string or blob too big
unable to use function %s in the requested context
transaction - SQL statements in progress
rollback
commit
cannot
cannot start a transaction within a transaction
cannot rollback - no transaction is active
cannot commit - no transaction is active
database schema has changed
sqlite_master
SELECT name, rootpage, sql FROM '%q'.%s WHERE %s
out of memory
integer
near "%T": syntax error
variable number must be between ?1 and ?%d
too many SQL variables
too many columns in %s
_ROWID_
misuse of aliased aggregate %s
no such column
ambiguous column name
%s: %s.%s.%s
%s: %s.%s
%s: %s
misuse of aggregate function %.*s()
no such function: %.*s
wrong number of arguments to function %.*s()
Expression tree is too large (maximum depth %d)
misuse of aggregate: %T
RAISE() may only be used within a trigger-program
invalid name: "%T"
too many attached databases - max %d
cannot ATTACH database within transaction
database %s is already in use
attached databases must use the same text encoding as main database
unable to open database: %s
no such database: %s
cannot detach database %s
cannot DETACH database within transaction
database %s is locked
sqlite_detach
sqlite_attach
%s %T cannot reference objects in database %s
no such table
unknown database %T
sqlite_
object name reserved for internal use: %s
table %T already exists
there is already an index named %s
too many columns on %s
duplicate column name: %s
default value of column [%s] is not constant
INTEGER
no such collation sequence: %.*s
CREATE TABLE
CREATE %s %.*s
UPDATE %Q.%s SET type='%s', name=%Q, tbl_name=%Q, rootpage=#%d, sql=%Q WHERE rowid=#%d
tbl_name='%q'
view %s is circularly defined
no such collation sequence: %s
table %s may not be modified
cannot modify %s because it is a view
rows deleted
integer overflow
LIKE or GLOB pattern too complex
ESCAPE expression must be a single character
table %S has %d columns but %d values were supplied
%d values for %d columns
table %S has no column named %s
rows inserted
may not be NULL
PRIMARY KEY must be unique
columns
column
are not unique
is not unique
automatic extension loading failed: %s
malformed database schema (
BINARY
unsupported file format
SELECT name, rootpage, sql FROM '%q'.%s
statement too long
unknown or unsupported join type: %T%s%T%s%T
RIGHT and FULL OUTER JOINs are not currently supported
a NATURAL join may not have an ON or USING clause
cannot have both ON and USING clauses in the same join
cannot join using column %s - column not present in both tables
only a single result allowed for a SELECT that is part of an expression
column%d
no such table: %s
no tables specified
too many columns in result set
too many terms in %s BY clause
%r %s BY term out of range - should be between 1 and %d
a GROUP BY clause is required before HAVING
aggregate functions are not allowed in the GROUP BY clause
DISTINCT in aggregate must be followed by an expression
trigger
INSERT INTO %Q.%s VALUES('trigger',%Q,%Q,0,'CREATE TRIGGER %q')
type='trigger' AND name='%q'
no such column: %s
rows updated
cannot VACUUM from within a transaction
ATTACH '' AS vacuum_db;
PRAGMA vacuum_db.synchronous=OFF
BEGIN EXCLUSIVE;
SELECT 'CREATE TABLE vacuum_db.' || substr(sql,14) FROM sqlite_master WHERE type='table' AND name!='sqlite_sequence' AND rootpage>0
SELECT 'CREATE INDEX vacuum_db.' || substr(sql,14) FROM sqlite_master WHERE sql LIKE 'CREATE INDEX %'
SELECT 'CREATE UNIQUE INDEX vacuum_db.' || substr(sql,21) FROM sqlite_master WHERE sql LIKE 'CREATE UNIQUE INDEX %'
SELECT 'INSERT INTO vacuum_db.' || quote(name) || ' SELECT * FROM ' || quote(name) || ';'FROM sqlite_master WHERE type = 'table' AND name!='sqlite_sequence' AND rootpage>0
SELECT 'DELETE FROM vacuum_db.' || quote(name) || ';' FROM vacuum_db.sqlite_master WHERE name='sqlite_sequence'
SELECT 'INSERT INTO vacuum_db.' || quote(name) || ' SELECT * FROM ' || quote(name) || ';' FROM vacuum_db.sqlite_master WHERE name=='sqlite_sequence';
INSERT INTO vacuum_db.sqlite_master SELECT type, name, tbl_name, rootpage, sql FROM sqlite_master WHERE type='view' OR type='trigger' OR (type='table' AND rootpage=0)
at most %d tables in a join
parser stack overflow
set list
too many arguments on function %T
interrupt
unrecognized token: "%T"
Unable to close due to unfinalised statements
not an error
SQL logic error or missing database
access permission denied
callback requested query abort
database is locked
database table is locked
attempt to write a readonly database
interrupted
disk I/O error
database disk image is malformed
database or disk is full
unable to open database file
table contains no data
String or BLOB exceeded size limit
constraint failed
datatype mismatch
library routine called out of sequence
large file support is disabled
authorization denied
auxiliary database format error
bind or column index out of range
file is encrypted or is not a database
unknown error
bad parameters
Unable to delete/modify user-function due to active statements
unknown encoding
Unable to delete/modify collation sequence due to active statements
no such vfs: %s
NOCASE
CryptAcquireContextW
CryptReleaseContext
CryptCreateHash
CryptGetHashParam
CryptHashData
CryptDestroyHash
CryptDecrypt
CryptDeriveKey
CryptImportKey
CryptDestroyKey
</entries>
</xml>
"Account","Login Name","Password","Web Site","Comments"
<entries ext="Password Exporter" extxmlversion="1.1" type="saved" encrypt="false">
name,url,username,password
"url","username","password","httpRealm","formActionOrigin","guid","timeCreated","timeLastUsed","timePasswordChanged"
CryptUnprotectData
InitCommonControlsEx
CreateToolhelp32Snapshot
Module32First
Module32Next
Process32First
Process32Next
GetModuleBaseNameW
EnumProcessModules
GetModuleFileNameExW
EnumProcesses
GetModuleInformation
SHGetSpecialFolderPathW
SHAutoComplete
AES-256-GCM
AES-192-GCM
AES-128-GCM
AES-256-ECB
AES-192-ECB
AES-128-ECB
c:\Projects\VS2005\ChromePass\Command-Line\ChromePass.pdb
_gmtime64
tolower
memcpy
memcmp
memset
toupper
strcmp
isspace
realloc
malloc
isdigit
strlen
isalnum
strftime
isxdigit
wcscat
_snwprintf
wcsncat
wcscpy
wcslen
wcschr
wcscmp
_wcsicmp
??3@YAXPAX@Z
??2@YAPAXI@Z
_memicmp
wcstoul
wcsrchr
memmove
_wcslwr
_purecall
msvcrt.dll
__dllonexit
_onexit
_c_exit
_XcptFilter
_cexit
_wcmdln
__wgetmainargs
_initterm
__setusermatherr
_adjust_fdiv
__p__commode
__p__fmode
__set_app_type
_controlfp
_except_handler3
ImageList_ReplaceIcon
ImageList_Create
ImageList_SetImageCount
ImageList_AddMasked
CreateStatusWindowW
CreateToolbarEx
COMCTL32.dll
LockFile
DeleteFileW
LeaveCriticalSection
GetCurrentProcessId
SetFilePointer
GetFileAttributesA
GetTickCount
GetSystemTimeAsFileTime
GetFileAttributesW
GetTempPathA
GetSystemTime
AreFileApisANSI
DeleteFileA
WriteFile
ReadFile
SetEndOfFile
GetFullPathNameW
CreateFileW
GetFullPathNameA
InterlockedIncrement
MultiByteToWideChar
InitializeCriticalSection
FlushFileBuffers
GetTempPathW
QueryPerformanceCounter
WideCharToMultiByte
CreateFileA
GetFileSize
DeleteCriticalSection
GetLastError
GetCurrentThreadId
LockFileEx
CloseHandle
UnlockFile
GetVersionExW
EnterCriticalSection
FreeLibrary
GetProcAddress
SystemTimeToFileTime
CompareFileTime
FileTimeToLocalFileTime
LocalAlloc
LocalFree
GetModuleHandleW
LoadLibraryW
FileTimeToSystemTime
GlobalUnlock
GlobalAlloc
GetSystemDirectoryW
FindResourceW
LoadResource
FindNextFileW
LoadLibraryExW
SizeofResource
FindClose
FormatMessageW
GlobalLock
GetWindowsDirectoryW
GetTimeFormatW
GetDateFormatW
GetTempFileNameW
LockResource
GetModuleFileNameW
FindFirstFileW
CopyFileW
WritePrivateProfileStringW
GetPrivateProfileIntW
EnumResourceNamesW
GetPrivateProfileStringW
SetErrorMode
GetCurrentProcess
ReadProcessMemory
ExitProcess
OpenProcess
EnumResourceTypesW
GetModuleHandleA
GetStartupInfoW
KERNEL32.dll
ChildWindowFromPoint
LoadCursorW
GetSysColorBrush
ShowWindow
SetCursor
GetClientRect
SetWindowTextW
UpdateWindow
SetDlgItemTextW
GetDlgItemTextW
GetSystemMetrics
DeferWindowPos
CreateWindowExW
GetWindowRect
GetDlgItemInt
SendDlgItemMessageW
EndDialog
GetDlgItem
InvalidateRect
SetDlgItemInt
SetWindowPos
GetWindowPlacement
LoadAcceleratorsW
PostMessageW
DefWindowProcW
SendMessageW
TranslateAcceleratorW
RegisterClassW
MessageBoxW
SetMenu
LoadImageW
LoadIconW
SetWindowLongW
GetWindowLongW
SetFocus
SetClipboardData
EnableWindow
MapWindowPoints
EmptyClipboard
EnableMenuItem
ReleaseDC
GetClassNameW
OpenClipboard
GetMenuStringW
CloseClipboard
GetMenuItemCount
MoveWindow
GetParent
CheckMenuItem
GetCursorPos
GetSysColor
GetMenu
GetSubMenu
GetWindowTextW
LoadMenuW
ModifyMenuW
GetMenuItemInfoW
DialogBoxParamW
GetDlgCtrlID
DestroyMenu
CreateDialogParamW
DestroyWindow
EnumChildWindows
LoadStringW
DispatchMessageW
EndDeferWindowPos
RegisterWindowMessageW
BeginDeferWindowPos
TrackPopupMenu
PostQuitMessage
GetMessageW
IsDialogMessageW
TranslateMessage
DrawTextExW
USER32.dll
DeleteObject
SetBkMode
CreateFontIndirectW
SetTextColor
SelectObject
GetDeviceCaps
SetBkColor
GetTextExtentPoint32W
GetStockObject
GDI32.dll
GetSaveFileNameW
FindTextW
comdlg32.dll
RegOpenKeyExW
RegCloseKey
RegQueryValueExW
ADVAPI32.dll
ShellExecuteW
SHGetFileInfoW
SHGetMalloc
SHGetPathFromIDListW
SHBrowseForFolderW
ShellExecuteExW
SHELL32.dll
CoCreateGuid
CoUninitialize
CoInitialize
ole32.dll
abcdefghijklmnopqrstuvwxyzABCDEFGHIJKLMNOPQRSTUVWXYZ0123456789
,,,,,,,,,,
wwwwwp
wwwwwwwwwwwwwwwwwwww~gww
wwwwwwwwwwwwwwN
wwwwww~fww
wwwwwwwwwwp
wwwwwwwwwwxwwN
wwwwpw~fhw
wwwwwwwwwwx
wwwwwwwwwwx
wwwwwwwwww
wwwwww
wwwwwwwwwx
wwwwwwwwwx
wwwwwwwwwx
wwwwwwwwww
wwwwwwwwwwx
wwwwwwwwwwx
wwwwwwp
wwwwwwwwwwx
wwwwwwww
xpwwwwwwwwwwwx
wwwwwwwwwwwp
wwwwwwwwwwwx
wwwwwwwwwwwwwwwwwwwwwwww
wwwwwwwwwww(
<assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0">
<dependency>
<dependentAssembly>
<assemblyIdentity type="Win32" name="Microsoft.Windows.Common-Controls" version="6.0.0.0" processorArchitecture="X86" publicKeyToken="6595b64144ccf1df" language="*"></assemblyIdentity>
</dependentAssembly>
</dependency>
</assembly>
????@@AAAB
D????@@AAAB
>>====
????@@AAAB
????@@AAAB
:@@AAAB
>>====
????@@AAAB
>>====
????@@AAAB
>>====
????@@AAAB
>>====
????@@AAAB
>>====
????@@AAAB
>>====
????@@AAAB
>>====
????@@AAAB
>>====
????@@AAAB
>>====
????@@AAAB
>>====
????@@AAAB
>>====
????@@AAAB
>>====
????@@AAAB
>>====
????@@AAAB
>>====
????@@AAAB
!%(/7:=?AFGLUV[_cfkq{~
MS Sans Serif
Badvapi32.dll
BShowGridLines
SaveFilterIndex
ShowInfoTip
UseProfileFolder
ProfileFolder
MarkOddEvenRows
UseLocalStateFile
LocalStateFilename
ChromeUserDataFolder
AdvancedExternal
ProtectFolder
%s\User Data
Google\Chrome
google\Chrome SxS
Chromium
<entry host="%s" user="%s" password="%s" formSubmitURL="%s" httpRealm="%s" userFieldName="%s" passFieldName="%s"/>
AppData\Local
Local Settings\Application Data
AppData\Roaming
Application Data
<meta http-equiv='content-type' content='text/html;charset=%s'>
<table dir="rtl"><tr><td>
<br><h4>%s <a href="http://www.nirsoft.net/" target="newwin">%s</a></h4><p>
</table>
Bcrypt32.dll
%8.8X-%4.4X-%4.4X-%2.2X%2.2X-%2.2X%2.2X%2.2X%2.2X%2.2X%2.2X
comctl32.dll
Error: Cannot load the common control classes.
Bnetmsg.dll
Unknown Error
Error %d: %s
kernel32.dll
%2.2X
%s (%s)
{%8.8X-%4.4X-%4.4X-%2.2X%2.2X-%2.2X%2.2X%2.2X%2.2X%2.2X%2.2X}
Local State
AppData\Roaming\Microsoft\Protect
Application Data\Microsoft\Protect
Bcaption
menu_%d
dialog_%d
strings
general
sysdatetimepick32
charset
TranslatorName
TranslatorURL
Version
_lng.ini
%-18s: %s
%%-%d.%ds
<td bgcolor=#%s nowrap>%s
<td bgcolor=#%s>%s
&nbsp;
<tr><td%s nowrap><b>%s</b><td bgcolor=#%s%s>%s
bgcolor="%s"
<table border="1" cellpadding="5">
nowrap
<font color="%s">%s</font>
</table><p>
<item>
<%s>%s</%s>
</item>
<?xml version="1.0" ?>
B%s: %s
SysListView32
/nosaveload
report.html
commdlg_FindReplace
*.htm;*.html
General
WinPos
Columns
/external
/stext
/shtml
/sverhtml
/stabular
/scomma
/skeepass
/spassexp
/savelangfile
/deleteregkey
B{Unknown}
Exception %8.8X at address %8.8X in module %s
Registers:
EAX=%8.8X EBX=%8.8X ECX=%8.8X EDX=%8.8X
ESI=%8.8X EDI=%8.8X EBP=%8.8X ESP=%8.8X
EIP=%8.8X
Stack Data: %s
Code Data: %s
psapi.dll
\systemroot
STATIC
Bshell32.dll
WAppData
Favorites
Desktop
Start Menu
Programs
Startup
Common Start Menu
Common Programs
Common Desktop
Common Startup
Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders
shlwapi.dll
%2.2X%2.2X%2.2X
&quot;
<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 3.2 Final//EN">
<html><head>%s<title>%s</title></head>
<body>
%s <h3>%s</h3>
</body></html>
size="%d"
color="#%s"
</font>
<font color="%s">
<table border="1" cellpadding="5"><tr%s>
width="%s"
<th%s>%s%s%s
</table>
&Advanced Options
&Save Selected Items
Ctrl+S
&Properties
Alt+Enter
Ctrl+F
&Copy Selected Items
Ctrl+C
Select &All
Ctrl+A
Deselect All
Ctrl+D
Show &Grid Lines
Show &Tooltips
Mark &Odd/Even Rows
&HTML Report - All Items
HTML R&eport - Selected Items
Choose Colum&ns
&Auto Size Columns
Ctrl+Plus
&Refresh
&Run As Administrator
Ctrl+F11
&About
Popup1
&Save Selected Items
Ctrl+S
&Copy Selected Items
Ctrl+C
HTML Report - All Items
HTML Report - Selected Items
Choose Colum&ns
&Auto Size Columns
Ctrl+Plus
&Properties
Alt+Enter
&Refresh
Properties
MS Sans Serif
Exception !
MS Sans Serif
Copy Exception
Continue
Terminate Application
The following application error has occurred:
If this problem persists, copy the above exception information to the clipboard, and send it to the author of this software.
Advanced Options
MS Shell Dlg
Load the passwords of the current logged-on user
Use the following profile folder:
Load the passwords from another Windows user or external drive:
Windows User Profile Path, For example: K:\Users\Admin
Windows Login Password:
Advanced external drive settings:
Windows Protect folder for getting the encryption keys, For example: F:\Users\Nir\AppData\Roaming\Microsoft\Protect
Chrome User Data folder where the password file is stored , for example: G:\Users\Nir\AppData\Local\Google\Chrome\User Data\Default
Extract the encryption key from the following 'Local State' File: (For Chrome 80.0 or greater)
Cancel
MS Sans Serif
Translation:
Column Settings
MS Shell Dlg
SysListView32
Move &Up
Move &Down
Default
Cancel
Check the columns that you would like to make visible. Use the Move Up and Move Down buttons to reorder the columns
Width of selected column (in pixels):
%d item(s)
, %d Selected
Created by using
Select a filename to save
Chrome Passwords List!Select the windows profile folderfCannot find the files of Chrome on the external profile folder. Try to run this tool as Administrator.
Loading... %d
Text File
Tab Delimited Text File
Tabular Text File
HTML File - Horizontal
HTML File - Vertical
XML File
Comma Delimited Text File
KeePass csv file,Password Exporter Firefox Extension XML File
Chrome CSV File
Firefox import/export csv file
Origin URL
Action URL
User Name Field
Password Field
User Name
Password
Created Time
Password Strength
Password File
Very Weak
Medium
Strong
Very Strong
VS_VERSION_INFO
StringFileInfo
040904b0
CompanyName
NirSoft
FileDescription
Chrome Password Recovery
FileVersion
InternalName
ChromePass
LegalCopyright
Copyright
2008 - 2021 Nir Sofer
OriginalFilename
ChromePass
ProductName
ChromePass
ProductVersion
VarFileInfo
Translation
Antivirus Signature
Bkav W32.AIDetectMalware
Lionic Riskware.Win32.ChromePass.1!c
Elastic malicious (high confidence)
ClamAV Win.Tool.ChromePassVariant-6615990-0
CMC Clean
CAT-QuickHeal Clean
Skyhigh Tool-PassView.b
ALYac Application.NirSoft.ChromePassView.F
Cylance Unsafe
Zillya Tool.ChromePass.Win32.467
Sangfor Hacktool.Win32.Chromepass.Vkn6
K7AntiVirus Unwanted-Program ( 0056c7481 )
Alibaba Clean
K7GW Unwanted-Program ( 0056c7481 )
Cybereason malicious.b0cf24
Baidu Clean
VirIT Clean
Symantec PasswordRevealer
tehtris Clean
ESET-NOD32 a variant of Win32/PSWTool.ChromePass.D potentially unsafe
APEX Clean
Avast Win32:Malware-gen
Cynet Malicious (score: 99)
Kaspersky not-a-virus:HEUR:PSWTool.Win32.ChromePass.gen
BitDefender Application.NirSoft.ChromePassView.F
NANO-Antivirus Trojan.Win32.Ool.jpsxrt
ViRobot Clean
MicroWorld-eScan Application.NirSoft.ChromePassView.F
Tencent Malware.Win32.Gencirc.10be30b7
Sophos NirPassView (PUA)
F-Secure Clean
DrWeb Clean
VIPRE Application.NirSoft.ChromePassView.F
TrendMicro HackTool.Win32.NirsoftPT.SM
McAfeeD ti!4B127E7B8314
Trapmine Clean
FireEye Generic.mg.a892c43b0cf244f0
Emsisoft Application.NirSoft.ChromePassView.F (B)
Paloalto generic.ml
GData Win32.Riskware.ChromePass.C
Jiangmin PSWTool.ChromePass.rr
Webroot W32.Malware.Gen
Varist Clean
Avira TR/AVI.Agent.rssnv
MAX malware (ai score=78)
Antiy-AVL RiskWare[PSWTool]/Win32.ChromePass
Kingsoft malware.kb.a.982
Gridinsoft PUP.Win32.ChromePass.ad!n
Xcitium Clean
Arcabit Application.NirSoft.ChromePassView.F
SUPERAntiSpyware Clean
ZoneAlarm not-a-virus:HEUR:PSWTool.Win32.ChromePass.gen
Microsoft HackTool:Win32/ChromePass
Google Detected
AhnLab-V3 Clean
Acronis Clean
McAfee Tool-PassView.b
TACHYON Clean
VBA32 Clean
Malwarebytes Generic.Malware.AI.DDS
Panda Trj/CI.A
Zoner Clean
TrendMicro-HouseCall HackTool.Win32.NirsoftPT.SM
Rising HackTool.ChromePass!8.13BF (TFE:5:094ofYYs1NG)
Yandex Clean
Ikarus PUA.PSWTool.Chromepass
MaxSecure Clean
Fortinet W32/PossibleThreat
BitDefenderTheta Gen:NN.ZexaCO.36806.oq0@aCVNqUnO
AVG Win32:Malware-gen
DeepInstinct MALICIOUS
alibabacloud Trojan[stealer]:Win/ChromePass.D
No IRMA results available.