Report - Bginfo.exe

Gen2 Emotet Generic Malware Malicious Library UPX Malicious Packer PE32 OS Processor Check PE File
ScreenShot
Created 2023.02.13 16:57 Machine s1_win7_x6401
Filename Bginfo.exe
Type PE32 executable (GUI) Intel 80386, for MS Windows
AI Score
5
Behavior Score
1.4
ZERO API file : clean
VT API (file)
md5 3aef228fb7ee187160482084d36c9726
sha256 c885df88693496d5c28ad16a1ecde259e191f54ad76428857742af843b846c53
ssdeep 49152:f0eL6aJyxz8eGSfmOifv0LkifQvl9Hu1QEBWfzbnWKNSq:seLWz8TSfmxfv05Qvl9Hu1fBWfzbnWs
imphash 80200b489dd3eaa3b18f8572ad7d3f92
impfuzzy 384:XSa4QjekMkdaJ3cSXmyD4qknkXZRmOQac:Xnr8kdaJsSXmglc
  Network IP location

Signature (5cnts)

Level Description
notice A process attempted to delay the analysis task.
notice Allocates read-write-execute memory (usually to unpack itself)
info Queries for the computername
info The file contains an unknown PE resource name possibly indicative of a packer
info This executable has a PDB path

Rules (10cnts)

Level Name Description Collection
danger Win32_Trojan_Emotet_1_Zero Win32 Trojan Emotet binaries (upload)
danger Win32_Trojan_Emotet_2_Zero Win32 Trojan Emotet binaries (upload)
warning Generic_Malware_Zero Generic Malware binaries (upload)
watch Malicious_Library_Zero Malicious_Library binaries (upload)
watch Malicious_Packer_Zero Malicious Packer binaries (upload)
watch UPX_Zero UPX packed file binaries (upload)
info IsPE32 (no description) binaries (upload)
info OS_Processor_Check_Zero OS Processor Check binaries (upload)
info PE_Header_Zero PE File Signature binaries (upload)
info Win32_Trojan_Gen_2_0904B0_Zero Win32 Trojan Gen binaries (upload)

Network (0cnts) ?

Request CC ASN Co IP4 Rule ? ZERO ?

Suricata ids

PE API

IAT(Import Address Table) Library

VERSION.dll
 0x587a3c VerQueryValueW
 0x587a40 GetFileVersionInfoW
 0x587a44 GetFileVersionInfoSizeW
snmpapi.dll
 0x587b34 SnmpUtilOidCpy
 0x587b38 SnmpUtilOidNCmp
 0x587b3c SnmpSvcGetUptime
NETAPI32.dll
 0x587580 NetApiBufferFree
 0x587584 NetWkstaUserGetInfo
 0x587588 NetWkstaGetInfo
 0x58758c NetServerGetInfo
ODBC32.dll
 0x587594 None
 0x587598 None
 0x58759c None
 0x5875a0 None
 0x5875a4 None
 0x5875a8 None
KERNEL32.dll
 0x5872b0 GetConsoleCP
 0x5872b4 GetModuleHandleExW
 0x5872b8 VirtualQuery
 0x5872bc RtlUnwind
 0x5872c0 RaiseException
 0x5872c4 OutputDebugStringW
 0x5872c8 VirtualAlloc
 0x5872cc HeapQueryInformation
 0x5872d0 CreateThread
 0x5872d4 WriteConsoleW
 0x5872d8 SetEnvironmentVariableW
 0x5872dc FreeEnvironmentStringsW
 0x5872e0 FindNextFileW
 0x5872e4 CreateFileW
 0x5872e8 SetEndOfFile
 0x5872ec WriteFile
 0x5872f0 CloseHandle
 0x5872f4 GetLastError
 0x5872f8 GetLocalTime
 0x5872fc GetSystemDirectoryW
 0x587300 LocalAlloc
 0x587304 LocalFree
 0x587308 FormatMessageW
 0x58730c GetEnvironmentVariableW
 0x587310 ExpandEnvironmentStringsW
 0x587314 FreeLibraryAndExitThread
 0x587318 FileTimeToLocalFileTime
 0x58731c FindClose
 0x587320 FindFirstFileW
 0x587324 GetDiskFreeSpaceExW
 0x587328 GetDriveTypeW
 0x58732c GetFileSize
 0x587330 GetLogicalDriveStringsW
 0x587334 GetVolumeInformationW
 0x587338 ReadFile
 0x58733c SetErrorMode
 0x587340 QueryPerformanceCounter
 0x587344 QueryPerformanceFrequency
 0x587348 GlobalMemoryStatusEx
 0x58734c GetTickCount
 0x587350 GetNativeSystemInfo
 0x587354 GetComputerNameW
 0x587358 FileTimeToSystemTime
 0x58735c SystemTimeToFileTime
 0x587360 GetDateFormatW
 0x587364 GetTimeFormatW
 0x587368 MultiByteToWideChar
 0x58736c CreateDirectoryW
 0x587370 Sleep
 0x587374 GetModuleHandleW
 0x587378 GetProcAddress
 0x58737c LoadResource
 0x587380 LockResource
 0x587384 SizeofResource
 0x587388 GetCommandLineA
 0x58738c SetStdHandle
 0x587390 GetCPInfo
 0x587394 GetStringTypeW
 0x587398 IsValidCodePage
 0x58739c GetACP
 0x5873a0 GetOEMCP
 0x5873a4 IsValidLocale
 0x5873a8 EnumSystemLocalesW
 0x5873ac LCMapStringW
 0x5873b0 GetTimeZoneInformation
 0x5873b4 GetConsoleMode
 0x5873b8 SetConsoleMode
 0x5873bc ReadConsoleInputW
 0x5873c0 ReadConsoleW
 0x5873c4 GetConsoleOutputCP
 0x5873c8 SetFilePointerEx
 0x5873cc FindFirstFileExW
 0x5873d0 FindResourceW
 0x5873d4 GetStartupInfoW
 0x5873d8 IsDebuggerPresent
 0x5873dc InitializeSListHead
 0x5873e0 GetSystemTimeAsFileTime
 0x5873e4 WaitForSingleObjectEx
 0x5873e8 ResetEvent
 0x5873ec IsProcessorFeaturePresent
 0x5873f0 SetUnhandledExceptionFilter
 0x5873f4 UnhandledExceptionFilter
 0x5873f8 GetUserDefaultLCID
 0x5873fc GetTempFileNameW
 0x587400 SearchPathW
 0x587404 GetProfileIntW
 0x587408 GetTickCount64
 0x58740c GetTempPathW
 0x587410 VerifyVersionInfoW
 0x587414 VerSetConditionMask
 0x587418 GetWindowsDirectoryW
 0x58741c GetCurrentDirectoryW
 0x587420 lstrcpyW
 0x587424 VirtualProtect
 0x587428 GetUserDefaultUILanguage
 0x58742c GetLocaleInfoW
 0x587430 GetFileTime
 0x587434 GetFileSizeEx
 0x587438 GlobalAlloc
 0x58743c GlobalUnlock
 0x587440 GlobalLock
 0x587444 ExitThread
 0x587448 GetFileAttributesExW
 0x58744c lstrcmpiW
 0x587450 DuplicateHandle
 0x587454 UnlockFile
 0x587458 LockFile
 0x58745c FlushFileBuffers
 0x587460 ResumeThread
 0x587464 SetThreadPriority
 0x587468 CreateEventW
 0x58746c WaitForSingleObject
 0x587470 SetEvent
 0x587474 GlobalFlags
 0x587478 GlobalFindAtomW
 0x58747c GlobalAddAtomW
 0x587480 lstrcmpW
 0x587484 GlobalDeleteAtom
 0x587488 LoadLibraryA
 0x58748c GetCurrentThreadId
 0x587490 GlobalGetAtomNameW
 0x587494 lstrcmpA
 0x587498 GetCurrentProcessId
 0x58749c LocalReAlloc
 0x5874a0 GlobalHandle
 0x5874a4 GlobalReAlloc
 0x5874a8 TlsFree
 0x5874ac TlsSetValue
 0x5874b0 TlsGetValue
 0x5874b4 TlsAlloc
 0x5874b8 InitializeCriticalSection
 0x5874bc GetModuleHandleA
 0x5874c0 InitializeCriticalSectionAndSpinCount
 0x5874c4 LeaveCriticalSection
 0x5874c8 EnterCriticalSection
 0x5874cc OutputDebugStringA
 0x5874d0 CompareStringW
 0x5874d4 CopyFileW
 0x5874d8 GlobalSize
 0x5874dc SystemTimeToTzSpecificLocalTime
 0x5874e0 FreeLibrary
 0x5874e4 DeleteCriticalSection
 0x5874e8 InitializeCriticalSectionEx
 0x5874ec GetFileType
 0x5874f0 GetStdHandle
 0x5874f4 WideCharToMultiByte
 0x5874f8 FindResourceExW
 0x5874fc GetProcessHeap
 0x587500 HeapSize
 0x587504 HeapFree
 0x587508 HeapReAlloc
 0x58750c HeapAlloc
 0x587510 HeapDestroy
 0x587514 SetFilePointer
 0x587518 SetLastError
 0x58751c GetSystemInfo
 0x587520 LoadLibraryW
 0x587524 LoadLibraryExW
 0x587528 IsWow64Process
 0x58752c GetVersionExW
 0x587530 DecodePointer
 0x587534 EncodePointer
 0x587538 GetFileAttributesW
 0x58753c DeleteFileW
 0x587540 GetEnvironmentStringsW
 0x587544 GetCommandLineW
 0x587548 GetFullPathNameW
 0x58754c GetModuleFileNameW
 0x587550 OpenProcess
 0x587554 GetExitCodeProcess
 0x587558 TerminateProcess
 0x58755c ExitProcess
 0x587560 GetCurrentProcess
 0x587564 WaitForMultipleObjects
 0x587568 MulDiv
 0x58756c GlobalFree
USER32.dll
 0x58765c GetKeyboardState
 0x587660 ToUnicodeEx
 0x587664 MapVirtualKeyExW
 0x587668 IsCharLowerW
 0x58766c GetKeyboardLayout
 0x587670 WaitMessage
 0x587674 GetComboBoxInfo
 0x587678 ReuseDDElParam
 0x58767c UnpackDDElParam
 0x587680 InsertMenuItemW
 0x587684 UpdateLayeredWindow
 0x587688 DrawIcon
 0x58768c CopyIcon
 0x587690 SetCursorPos
 0x587694 BringWindowToTop
 0x587698 GetSystemMenu
 0x58769c SetParent
 0x5876a0 SetWindowRgn
 0x5876a4 SetClassLongW
 0x5876a8 DrawStateW
 0x5876ac SetLayeredWindowAttributes
 0x5876b0 GetKeyNameTextW
 0x5876b4 MapVirtualKeyW
 0x5876b8 GetMenuDefaultItem
 0x5876bc CreatePopupMenu
 0x5876c0 NotifyWinEvent
 0x5876c4 InvertRect
 0x5876c8 HideCaret
 0x5876cc EnableScrollBar
 0x5876d0 MessageBeep
 0x5876d4 GetIconInfo
 0x5876d8 IsRectEmpty
 0x5876dc DrawFocusRect
 0x5876e0 WindowFromPoint
 0x5876e4 ReleaseCapture
 0x5876e8 GetNextDlgGroupItem
 0x5876ec DeleteMenu
 0x5876f0 ShowOwnedPopups
 0x5876f4 TrackMouseEvent
 0x5876f8 MapDialogRect
 0x5876fc GetAsyncKeyState
 0x587700 GetNextDlgTabItem
 0x587704 CreateDialogIndirectParamW
 0x587708 SetRectEmpty
 0x58770c SendDlgItemMessageA
 0x587710 CopyImage
 0x587714 DestroyMenu
 0x587718 GetWindowDC
 0x58771c TabbedTextOutW
 0x587720 GrayStringW
 0x587724 DrawTextExW
 0x587728 CharUpperW
 0x58772c DestroyIcon
 0x587730 RealChildWindowFromPoint
 0x587734 GetDesktopWindow
 0x587738 ClientToScreen
 0x58773c WinHelpW
 0x587740 GetScrollInfo
 0x587744 SetScrollInfo
 0x587748 CallNextHookEx
 0x58774c SetWindowsHookExW
 0x587750 GetWindow
 0x587754 GetTopWindow
 0x587758 GetClassLongW
 0x58775c EqualRect
 0x587760 CopyRect
 0x587764 CreateAcceleratorTableW
 0x587768 ShowScrollBar
 0x58776c GetScrollRange
 0x587770 SetScrollRange
 0x587774 GetScrollPos
 0x587778 SetScrollPos
 0x58777c ScrollWindow
 0x587780 RedrawWindow
 0x587784 ValidateRect
 0x587788 GetForegroundWindow
 0x58778c SetActiveWindow
 0x587790 SetMenu
 0x587794 GetCapture
 0x587798 GetKeyState
 0x58779c GetDlgCtrlID
 0x5877a0 GetSystemMetrics
 0x5877a4 GetDC
 0x5877a8 ReleaseDC
 0x5877ac GetSysColor
 0x5877b0 GetSysColorBrush
 0x5877b4 IsChild
 0x5877b8 IsMenu
 0x5877bc IsWindow
 0x5877c0 GetClassInfoExW
 0x5877c4 GetClassInfoW
 0x5877c8 RegisterClassW
 0x5877cc GetMessageTime
 0x5877d0 GetMessagePos
 0x5877d4 PeekMessageW
 0x5877d8 RegisterWindowMessageW
 0x5877dc GetLastActivePopup
 0x5877e0 GetWindowThreadProcessId
 0x5877e4 IsWindowEnabled
 0x5877e8 UnhookWindowsHookEx
 0x5877ec LoadBitmapW
 0x5877f0 GetMenuCheckMarkDimensions
 0x5877f4 SetMenuItemBitmaps
 0x5877f8 GetFocus
 0x5877fc RemoveMenu
 0x587800 AppendMenuW
 0x587804 InsertMenuW
 0x587808 GetMenuItemCount
 0x58780c GetMenuItemID
 0x587810 GetMenuState
 0x587814 GetMenuStringW
 0x587818 MapWindowPoints
 0x58781c DrawIconEx
 0x587820 LoadImageW
 0x587824 EnableMenuItem
 0x587828 CheckMenuItem
 0x58782c SetCapture
 0x587830 EmptyClipboard
 0x587834 RegisterClipboardFormatW
 0x587838 SetClipboardData
 0x58783c CloseClipboard
 0x587840 OpenClipboard
 0x587844 DrawEdge
 0x587848 MonitorFromWindow
 0x58784c IsDialogMessageW
 0x587850 LoadIconW
 0x587854 LoadCursorW
 0x587858 CheckMenuRadioItem
 0x58785c GetClassNameW
 0x587860 EnumChildWindows
 0x587864 GetParent
 0x587868 SetWindowLongW
 0x58786c GetWindowLongW
 0x587870 PtInRect
 0x587874 UnionRect
 0x587878 DestroyAcceleratorTable
 0x58787c CopyAcceleratorTableW
 0x587880 SetRect
 0x587884 LockWindowUpdate
 0x587888 GetDoubleClickTime
 0x58788c ModifyMenuW
 0x587890 CharUpperBuffW
 0x587894 IsClipboardFormatAvailable
 0x587898 GetUpdateRect
 0x58789c DrawMenuBar
 0x5878a0 DefFrameProcW
 0x5878a4 DefMDIChildProcW
 0x5878a8 TranslateMDISysAccel
 0x5878ac SubtractRect
 0x5878b0 IntersectRect
 0x5878b4 FrameRect
 0x5878b8 ChildWindowFromPoint
 0x5878bc CreateMenu
 0x5878c0 GetWindowRgn
 0x5878c4 DestroyCursor
 0x5878c8 RemovePropW
 0x5878cc ScreenToClient
 0x5878d0 GetCursorPos
 0x5878d4 SetCursor
 0x5878d8 MessageBoxW
 0x5878dc AdjustWindowRectEx
 0x5878e0 GetWindowRect
 0x5878e4 GetClientRect
 0x5878e8 GetWindowTextLengthW
 0x5878ec GetWindowTextW
 0x5878f0 GetPropW
 0x5878f4 SetPropW
 0x5878f8 InvalidateRect
 0x5878fc SetSysColors
 0x587900 FillRect
 0x587904 InflateRect
 0x587908 OffsetRect
 0x58790c SystemParametersInfoW
 0x587910 MonitorFromPoint
 0x587914 GetMonitorInfoW
 0x587918 EnumDisplayMonitors
 0x58791c GetProcessWindowStation
 0x587920 GetUserObjectInformationW
 0x587924 PostThreadMessageW
 0x587928 SendMessageW
 0x58792c SetWindowTextW
 0x587930 DrawTextW
 0x587934 LoadStringW
 0x587938 DrawFrameControl
 0x58793c GetMessageW
 0x587940 TranslateMessage
 0x587944 DispatchMessageW
 0x587948 PostMessageW
 0x58794c DefWindowProcW
 0x587950 PostQuitMessage
 0x587954 CallWindowProcW
 0x587958 RegisterClassExW
 0x58795c CreateWindowExW
 0x587960 DestroyWindow
 0x587964 ShowWindow
 0x587968 MoveWindow
 0x58796c SetWindowPos
 0x587970 GetWindowPlacement
 0x587974 SetWindowPlacement
 0x587978 BeginDeferWindowPos
 0x58797c DeferWindowPos
 0x587980 EndDeferWindowPos
 0x587984 IsWindowVisible
 0x587988 IsIconic
 0x58798c DialogBoxIndirectParamW
 0x587990 IsZoomed
 0x587994 CreateDialogParamW
 0x587998 DialogBoxParamW
 0x58799c EndDialog
 0x5879a0 GetDlgItem
 0x5879a4 SetDlgItemTextW
 0x5879a8 GetDlgItemTextW
 0x5879ac CheckDlgButton
 0x5879b0 CheckRadioButton
 0x5879b4 IsDlgButtonChecked
 0x5879b8 DefDlgProcW
 0x5879bc SetFocus
 0x5879c0 GetActiveWindow
 0x5879c4 SetTimer
 0x5879c8 KillTimer
 0x5879cc EnableWindow
 0x5879d0 LoadAcceleratorsW
 0x5879d4 TranslateAcceleratorW
 0x5879d8 LoadMenuW
 0x5879dc GetMenu
 0x5879e0 GetSubMenu
 0x5879e4 TrackPopupMenu
 0x5879e8 GetMenuItemInfoW
 0x5879ec SetMenuItemInfoW
 0x5879f0 SetMenuDefaultItem
 0x5879f4 UpdateWindow
 0x5879f8 SetForegroundWindow
 0x5879fc BeginPaint
 0x587a00 EndPaint
GDI32.dll
 0x5870dc GetWindowExtEx
 0x5870e0 IntersectClipRect
 0x5870e4 PtVisible
 0x5870e8 RectVisible
 0x5870ec RestoreDC
 0x5870f0 SaveDC
 0x5870f4 ExtSelectClipRgn
 0x5870f8 SetLayout
 0x5870fc GetLayout
 0x587100 SetPolyFillMode
 0x587104 SetROP2
 0x587108 SetTextAlign
 0x58710c TextOutW
 0x587110 ExtTextOutW
 0x587114 SetViewportExtEx
 0x587118 SetViewportOrgEx
 0x58711c SetWindowExtEx
 0x587120 SetWindowOrgEx
 0x587124 OffsetViewportOrgEx
 0x587128 OffsetWindowOrgEx
 0x58712c ScaleViewportExtEx
 0x587130 ScaleWindowExtEx
 0x587134 GetTextExtentPoint32W
 0x587138 CombineRgn
 0x58713c CreateRectRgnIndirect
 0x587140 PatBlt
 0x587144 GetViewportExtEx
 0x587148 DPtoLP
 0x58714c GetTextMetricsW
 0x587150 EnumFontFamiliesExW
 0x587154 GetNearestPaletteIndex
 0x587158 GetBkColor
 0x58715c CreateDIBitmap
 0x587160 EnumFontFamiliesW
 0x587164 GetTextCharsetInfo
 0x587168 CreateEllipticRgn
 0x58716c Ellipse
 0x587170 GetTextColor
 0x587174 CreatePolygonRgn
 0x587178 Polygon
 0x58717c Polyline
 0x587180 CreateRoundRectRgn
 0x587184 LPtoDP
 0x587188 Rectangle
 0x58718c GetRgnBox
 0x587190 OffsetRgn
 0x587194 RoundRect
 0x587198 FillRgn
 0x58719c FrameRgn
 0x5871a0 GetBoundsRect
 0x5871a4 PtInRegion
 0x5871a8 ExtFloodFill
 0x5871ac SetPaletteEntries
 0x5871b0 SetPixelV
 0x5871b4 GetWindowOrgEx
 0x5871b8 GetViewportOrgEx
 0x5871bc GetTextFaceW
 0x5871c0 GetStockObject
 0x5871c4 GetPixel
 0x5871c8 GetObjectType
 0x5871cc GetClipBox
 0x5871d0 ExcludeClipRect
 0x5871d4 Escape
 0x5871d8 CreatePatternBrush
 0x5871dc CreateHatchBrush
 0x5871e0 SetBkColor
 0x5871e4 CreateBitmap
 0x5871e8 CreateDCW
 0x5871ec CopyMetaFileW
 0x5871f0 BitBlt
 0x5871f4 CreateCompatibleBitmap
 0x5871f8 CreateCompatibleDC
 0x5871fc CreatePalette
 0x587200 CreateRectRgn
 0x587204 CreateSolidBrush
 0x587208 DeleteDC
 0x58720c DeleteObject
 0x587210 GetDeviceCaps
 0x587214 GetDIBits
 0x587218 GetNearestColor
 0x58721c GetSystemPaletteEntries
 0x587220 RealizePalette
 0x587224 SelectClipRgn
 0x587228 SelectObject
 0x58722c SelectPalette
 0x587230 SetBkMode
 0x587234 StretchBlt
 0x587238 SetStretchBltMode
 0x58723c CreateDIBSection
 0x587240 SetDIBColorTable
 0x587244 GetObjectW
 0x587248 SetBrushOrgEx
 0x58724c UnrealizeObject
 0x587250 GdiFlush
 0x587254 CreatePen
 0x587258 LineTo
 0x58725c SetPixel
 0x587260 MoveToEx
 0x587264 CreateFontIndirectW
 0x587268 EnumFontsW
 0x58726c SetTextColor
 0x587270 UpdateColors
 0x587274 CreateFontW
 0x587278 SetGraphicsMode
 0x58727c SetMapMode
 0x587280 SetWorldTransform
 0x587284 StartDocW
 0x587288 EndDoc
 0x58728c StartPage
 0x587290 SetRectRgn
 0x587294 GetPaletteEntries
 0x587298 EndPage
MSIMG32.dll
 0x587574 TransparentBlt
 0x587578 AlphaBlend
COMDLG32.dll
 0x5870c4 CommDlgExtendedError
 0x5870c8 ChooseColorW
 0x5870cc GetSaveFileNameW
 0x5870d0 GetOpenFileNameW
 0x5870d4 PrintDlgW
WINSPOOL.DRV
 0x587a54 ClosePrinter
 0x587a58 OpenPrinterW
 0x587a5c DocumentPropertiesW
ADVAPI32.dll
 0x587000 RegisterServiceCtrlHandlerW
 0x587004 RegOpenKeyExW
 0x587008 RegQueryValueExW
 0x58700c LsaQueryInformationPolicy
 0x587010 LsaOpenPolicy
 0x587014 LsaClose
 0x587018 LsaFreeMemory
 0x58701c SaferComputeTokenFromLevel
 0x587020 SaferIdentifyLevel
 0x587024 SaferCloseLevel
 0x587028 RegCreateKeyW
 0x58702c RegEnumKeyW
 0x587030 RegGetValueW
 0x587034 RegOpenKeyExA
 0x587038 RegSetValueExA
 0x58703c RegQueryValueExA
 0x587040 RegEnumValueW
 0x587044 RegDeleteKeyW
 0x587048 RegCreateKeyExW
 0x58704c StartServiceW
 0x587050 StartServiceCtrlDispatcherW
 0x587054 SetServiceStatus
 0x587058 RegCloseKey
 0x58705c QueryServiceStatus
 0x587060 OpenServiceW
 0x587064 OpenSCManagerW
 0x587068 DeleteService
 0x58706c CreateServiceW
 0x587070 CloseServiceHandle
 0x587074 RegOpenKeyW
 0x587078 RevertToSelf
 0x58707c ImpersonateLoggedOnUser
 0x587080 GetTokenInformation
 0x587084 FreeSid
 0x587088 EqualSid
 0x58708c AllocateAndInitializeSid
 0x587090 OpenProcessToken
 0x587094 CreateProcessAsUserW
 0x587098 RegSetValueExW
 0x58709c RegDeleteValueW
 0x5870a0 RegEnumKeyExW
 0x5870a4 GetUserNameW
 0x5870a8 ReadEventLogW
 0x5870ac OpenEventLogW
 0x5870b0 CloseEventLog
SHELL32.dll
 0x587610 Shell_NotifyIconW
 0x587614 SHChangeNotify
 0x587618 SHGetFileInfoW
 0x58761c SHGetPathFromIDListW
 0x587620 SHGetSpecialFolderLocation
 0x587624 SHGetDesktopFolder
 0x587628 SHAppBarMessage
 0x58762c SHBrowseForFolderW
 0x587630 DragFinish
 0x587634 DragQueryFileW
 0x587638 ShellExecuteW
COMCTL32.dll
 0x5870b8 CreateToolbarEx
 0x5870bc None
SHLWAPI.dll
 0x587640 PathIsUNCW
 0x587644 PathFindFileNameW
 0x587648 PathFindExtensionW
 0x58764c PathRemoveFileSpecW
 0x587650 StrFormatKBSizeW
 0x587654 PathStripToRootW
UxTheme.dll
 0x587a08 GetThemeSysColor
 0x587a0c IsThemeBackgroundPartiallyTransparent
 0x587a10 IsAppThemed
 0x587a14 GetWindowTheme
 0x587a18 GetCurrentThemeName
 0x587a1c GetThemeColor
 0x587a20 DrawThemeParentBackground
 0x587a24 DrawThemeText
 0x587a28 DrawThemeBackground
 0x587a2c CloseThemeData
 0x587a30 OpenThemeData
 0x587a34 GetThemePartSize
ole32.dll
 0x587ac8 OleLockRunning
 0x587acc RevokeDragDrop
 0x587ad0 OleCreateMenuDescriptor
 0x587ad4 OleDestroyMenuDescriptor
 0x587ad8 OleTranslateAccelerator
 0x587adc IsAccelerator
 0x587ae0 RegisterDragDrop
 0x587ae4 CoLockObjectExternal
 0x587ae8 OleGetClipboard
 0x587aec DoDragDrop
 0x587af0 CoInitializeEx
 0x587af4 CoDisconnectObject
 0x587af8 ReleaseStgMedium
 0x587afc OleDuplicateData
 0x587b00 CoTaskMemFree
 0x587b04 CoTaskMemAlloc
 0x587b08 CoSetProxyBlanket
 0x587b0c CoInitializeSecurity
 0x587b10 OleInitialize
 0x587b14 CreateILockBytesOnHGlobal
 0x587b18 StgCreateDocfileOnILockBytes
 0x587b1c CreateStreamOnHGlobal
 0x587b20 OleRun
 0x587b24 CoInitialize
 0x587b28 CoCreateInstance
 0x587b2c CoUninitialize
OLEAUT32.dll
 0x5875c0 VariantTimeToSystemTime
 0x5875c4 LoadTypeLib
 0x5875c8 VarBstrFromDate
 0x5875cc SysAllocStringLen
 0x5875d0 VariantChangeType
 0x5875d4 SafeArrayGetElement
 0x5875d8 SafeArrayGetLBound
 0x5875dc SafeArrayGetUBound
 0x5875e0 SysStringLen
 0x5875e4 OleLoadPicture
 0x5875e8 VariantCopy
 0x5875ec VariantClear
 0x5875f0 VariantInit
 0x5875f4 SystemTimeToVariantTime
 0x5875f8 SysAllocStringByteLen
 0x5875fc SysStringByteLen
 0x587600 SysFreeString
 0x587604 SysAllocString
 0x587608 GetErrorInfo
WS2_32.dll
 0x587a64 WSAStartup
gdiplus.dll
 0x587a6c GdipCreateFromHDC
 0x587a70 GdipCreateBitmapFromHBITMAP
 0x587a74 GdipDrawImageI
 0x587a78 GdipDeleteGraphics
 0x587a7c GdipBitmapUnlockBits
 0x587a80 GdipDrawImageRectI
 0x587a84 GdipCreateBitmapFromScan0
 0x587a88 GdipCreateBitmapFromStream
 0x587a8c GdipGetImagePaletteSize
 0x587a90 GdipGetImagePalette
 0x587a94 GdipGetImagePixelFormat
 0x587a98 GdipGetImageHeight
 0x587a9c GdipGetImageWidth
 0x587aa0 GdipGetImageGraphicsContext
 0x587aa4 GdipDisposeImage
 0x587aa8 GdipCloneImage
 0x587aac GdiplusStartup
 0x587ab0 GdipFree
 0x587ab4 GdipAlloc
 0x587ab8 GdiplusShutdown
 0x587abc GdipSetInterpolationMode
 0x587ac0 GdipBitmapLockBits
OLEACC.dll
 0x5875b0 AccessibleObjectFromWindow
 0x5875b4 LresultFromObject
 0x5875b8 CreateStdAccessibleObject
IMM32.dll
 0x5872a0 ImmReleaseContext
 0x5872a4 ImmGetOpenStatus
 0x5872a8 ImmGetContext
WINMM.dll
 0x587a4c PlaySoundW

EAT(Export Address Table) is none



Similarity measure (PE file only) - Checking for service failure