Report - Authenticator222.exe

Emotet Malicious Library Admin Tool (Sysinternals etc ...) UPX PE File PE64 MZP Format OS Processor Check
ScreenShot
Created 2024.08.12 09:03 Machine s1_win7_x6401
Filename Authenticator222.exe
Type PE32+ executable (GUI) x86-64, for MS Windows
AI Score Not founds Behavior Score
1.4
ZERO API file : mailcious
VT API (file) 22 detected (Common, Attribute, HighConfidence, MalwareX, CLOUD, pzcmj, Generic Reputation PUA, Detected, Wacapew, Acll, MALICIOUS, Chgt, Kryptik, confidence, 100%)
md5 7682909e9bda1e07a178ee76c114e42c
sha256 c9c2671d59e747d93585102e1af0215aaa8e9680c5616f17599380e5209a0d0d
ssdeep 196608:ZBws4UYoeoQhEmVgRq8syfKmRQpBVZrasK5hTuAvYct:ZcoeoQhEmGLQph6UuX
imphash 5a6977da69b938abc407aaddd312239b
impfuzzy 192:oc5guRRuudXEUh994OyoSN5mLI2HChF9cz3U13m/hgPbOQE5E/Wxxw146jlmk:curdv94CX0xLKzk13tPbOQE5iWxK1Uk
  Network IP location

Signature (3cnts)

Level Description
warning File has been identified by 22 AntiVirus engines on VirusTotal as malicious
notice Allocates read-write-execute memory (usually to unpack itself)
info The executable contains unknown PE section names indicative of a packer (could be a false positive)

Rules (8cnts)

Level Name Description Collection
danger Win32_Trojan_Emotet_2_Zero Win32 Trojan Emotet binaries (upload)
watch Admin_Tool_IN_Zero Admin Tool Sysinternals binaries (upload)
watch Malicious_Library_Zero Malicious_Library binaries (upload)
watch UPX_Zero UPX packed file binaries (upload)
info IsPE64 (no description) binaries (upload)
info mzp_file_format MZP(Delphi) file format binaries (upload)
info OS_Processor_Check_Zero OS Processor Check binaries (upload)
info PE_Header_Zero PE File Signature binaries (upload)

Network (0cnts) ?

Request CC ASN Co IP4 Rule ? ZERO ?

Suricata ids

PE API

IAT(Import Address Table) Library

oleaut32.dll
 0x11e6638 SysFreeString
 0x11e6640 SysReAllocStringLen
 0x11e6648 SysAllocStringLen
advapi32.dll
 0x11e6658 RegQueryValueExW
 0x11e6660 RegOpenKeyExW
 0x11e6668 RegCloseKey
user32.dll
 0x11e6678 CharNextW
 0x11e6680 LoadStringW
kernel32.dll
 0x11e6690 Sleep
 0x11e6698 VirtualFree
 0x11e66a0 VirtualAlloc
 0x11e66a8 lstrlenW
 0x11e66b0 VirtualQuery
 0x11e66b8 QueryPerformanceCounter
 0x11e66c0 GetTickCount
 0x11e66c8 GetSystemInfo
 0x11e66d0 GetVersion
 0x11e66d8 CompareStringW
 0x11e66e0 IsDBCSLeadByteEx
 0x11e66e8 IsValidLocale
 0x11e66f0 SetThreadLocale
 0x11e66f8 GetSystemDefaultUILanguage
 0x11e6700 GetUserDefaultUILanguage
 0x11e6708 GetLocaleInfoW
 0x11e6710 WideCharToMultiByte
 0x11e6718 MultiByteToWideChar
 0x11e6720 GetConsoleOutputCP
 0x11e6728 GetConsoleCP
 0x11e6730 GetACP
 0x11e6738 LoadLibraryExW
 0x11e6740 GetStartupInfoW
 0x11e6748 GetProcAddress
 0x11e6750 GetModuleHandleW
 0x11e6758 GetModuleFileNameW
 0x11e6760 GetCommandLineW
 0x11e6768 FindResourceW
 0x11e6770 FreeLibrary
 0x11e6778 GetLastError
 0x11e6780 UnhandledExceptionFilter
 0x11e6788 RtlUnwindEx
 0x11e6790 RtlUnwind
 0x11e6798 RaiseException
 0x11e67a0 ExitProcess
 0x11e67a8 ExitThread
 0x11e67b0 SwitchToThread
 0x11e67b8 GetCurrentThreadId
 0x11e67c0 CreateThread
 0x11e67c8 DeleteCriticalSection
 0x11e67d0 LeaveCriticalSection
 0x11e67d8 EnterCriticalSection
 0x11e67e0 InitializeCriticalSection
 0x11e67e8 FindFirstFileW
 0x11e67f0 FindClose
 0x11e67f8 WriteFile
 0x11e6800 SetFilePointer
 0x11e6808 SetEndOfFile
 0x11e6810 ReadFile
 0x11e6818 GetFileType
 0x11e6820 GetFileSize
 0x11e6828 CreateFileW
 0x11e6830 GetStdHandle
 0x11e6838 CloseHandle
kernel32.dll
 0x11e6848 GetProcAddress
 0x11e6850 RaiseException
 0x11e6858 LoadLibraryA
 0x11e6860 GetLastError
 0x11e6868 TlsSetValue
 0x11e6870 TlsGetValue
 0x11e6878 LocalFree
 0x11e6880 LocalAlloc
 0x11e6888 GetModuleHandleW
 0x11e6890 FreeLibrary
user32.dll
 0x11e68a0 WINNLSEnableIME
 0x11e68a8 SetClassLongPtrW
 0x11e68b0 GetClassLongPtrW
 0x11e68b8 SetWindowLongPtrW
 0x11e68c0 GetWindowLongPtrW
 0x11e68c8 CreateWindowExW
 0x11e68d0 WindowFromPoint
 0x11e68d8 WaitMessage
 0x11e68e0 UpdateLayeredWindow
 0x11e68e8 UpdateWindow
 0x11e68f0 UnregisterClassW
 0x11e68f8 UnhookWindowsHookEx
 0x11e6900 TranslateMessage
 0x11e6908 TranslateMDISysAccel
 0x11e6910 TrackPopupMenu
 0x11e6918 TrackMouseEvent
 0x11e6920 SystemParametersInfoW
 0x11e6928 ShowWindow
 0x11e6930 ShowScrollBar
 0x11e6938 ShowOwnedPopups
 0x11e6940 ShowCaret
 0x11e6948 SetWindowRgn
 0x11e6950 SetWindowsHookExW
 0x11e6958 SetWindowTextW
 0x11e6960 SetWindowPos
 0x11e6968 SetWindowPlacement
 0x11e6970 SetTimer
 0x11e6978 SetScrollRange
 0x11e6980 SetScrollPos
 0x11e6988 SetScrollInfo
 0x11e6990 SetRect
 0x11e6998 SetPropW
 0x11e69a0 SetParent
 0x11e69a8 SetMenuItemInfoW
 0x11e69b0 SetMenu
 0x11e69b8 SetForegroundWindow
 0x11e69c0 SetFocus
 0x11e69c8 SetCursorPos
 0x11e69d0 SetCursor
 0x11e69d8 SetClipboardData
 0x11e69e0 SetCapture
 0x11e69e8 SetActiveWindow
 0x11e69f0 SendMessageTimeoutW
 0x11e69f8 SendMessageA
 0x11e6a00 SendMessageW
 0x11e6a08 ScrollWindow
 0x11e6a10 ScreenToClient
 0x11e6a18 RemovePropW
 0x11e6a20 RemoveMenu
 0x11e6a28 ReleaseDC
 0x11e6a30 ReleaseCapture
 0x11e6a38 RegisterWindowMessageW
 0x11e6a40 RegisterClipboardFormatW
 0x11e6a48 RegisterClassW
 0x11e6a50 RedrawWindow
 0x11e6a58 PostQuitMessage
 0x11e6a60 PostMessageW
 0x11e6a68 PeekMessageA
 0x11e6a70 PeekMessageW
 0x11e6a78 OpenClipboard
 0x11e6a80 MsgWaitForMultipleObjectsEx
 0x11e6a88 MsgWaitForMultipleObjects
 0x11e6a90 MessageBoxIndirectW
 0x11e6a98 MessageBoxW
 0x11e6aa0 MessageBeep
 0x11e6aa8 MapWindowPoints
 0x11e6ab0 MapVirtualKeyW
 0x11e6ab8 LoadStringW
 0x11e6ac0 LoadKeyboardLayoutW
 0x11e6ac8 LoadIconW
 0x11e6ad0 LoadCursorW
 0x11e6ad8 LoadBitmapW
 0x11e6ae0 KillTimer
 0x11e6ae8 IsZoomed
 0x11e6af0 IsWindowVisible
 0x11e6af8 IsWindowUnicode
 0x11e6b00 IsWindowEnabled
 0x11e6b08 IsWindow
 0x11e6b10 IsIconic
 0x11e6b18 IsDialogMessageA
 0x11e6b20 IsDialogMessageW
 0x11e6b28 IsClipboardFormatAvailable
 0x11e6b30 IsChild
 0x11e6b38 InvalidateRect
 0x11e6b40 InsertMenuItemW
 0x11e6b48 InsertMenuW
 0x11e6b50 InflateRect
 0x11e6b58 HideCaret
 0x11e6b60 GetWindowThreadProcessId
 0x11e6b68 GetWindowTextLengthW
 0x11e6b70 GetWindowTextW
 0x11e6b78 GetWindowRect
 0x11e6b80 GetWindowPlacement
 0x11e6b88 GetWindowDC
 0x11e6b90 GetUpdateRgn
 0x11e6b98 GetUpdateRect
 0x11e6ba0 GetTopWindow
 0x11e6ba8 GetSystemMetrics
 0x11e6bb0 GetSystemMenu
 0x11e6bb8 GetSysColorBrush
 0x11e6bc0 GetSysColor
 0x11e6bc8 GetSubMenu
 0x11e6bd0 GetScrollRange
 0x11e6bd8 GetScrollPos
 0x11e6be0 GetScrollInfo
 0x11e6be8 GetScrollBarInfo
 0x11e6bf0 GetPropW
 0x11e6bf8 GetParent
 0x11e6c00 GetWindow
 0x11e6c08 GetMessagePos
 0x11e6c10 GetMessageExtraInfo
 0x11e6c18 GetMenuStringW
 0x11e6c20 GetMenuState
 0x11e6c28 GetMenuItemInfoW
 0x11e6c30 GetMenuItemID
 0x11e6c38 GetMenuItemCount
 0x11e6c40 GetMenu
 0x11e6c48 GetLastActivePopup
 0x11e6c50 GetKeyboardState
 0x11e6c58 GetKeyboardLayoutNameW
 0x11e6c60 GetKeyboardLayoutList
 0x11e6c68 GetKeyboardLayout
 0x11e6c70 GetKeyState
 0x11e6c78 GetKeyNameTextW
 0x11e6c80 GetIconInfo
 0x11e6c88 GetForegroundWindow
 0x11e6c90 GetFocus
 0x11e6c98 GetDlgCtrlID
 0x11e6ca0 GetDesktopWindow
 0x11e6ca8 GetDCEx
 0x11e6cb0 GetDC
 0x11e6cb8 GetCursorPos
 0x11e6cc0 GetCursor
 0x11e6cc8 GetClipboardData
 0x11e6cd0 GetClientRect
 0x11e6cd8 GetClassNameW
 0x11e6ce0 GetClassInfoExW
 0x11e6ce8 GetClassInfoW
 0x11e6cf0 GetCapture
 0x11e6cf8 GetActiveWindow
 0x11e6d00 FrameRect
 0x11e6d08 FindWindowExW
 0x11e6d10 FindWindowW
 0x11e6d18 FillRect
 0x11e6d20 EnumWindows
 0x11e6d28 EnumThreadWindows
 0x11e6d30 EnumClipboardFormats
 0x11e6d38 EnumChildWindows
 0x11e6d40 EndPaint
 0x11e6d48 EndMenu
 0x11e6d50 EnableWindow
 0x11e6d58 EnableScrollBar
 0x11e6d60 EnableMenuItem
 0x11e6d68 EmptyClipboard
 0x11e6d70 DrawTextExW
 0x11e6d78 DrawTextW
 0x11e6d80 DrawMenuBar
 0x11e6d88 DrawIconEx
 0x11e6d90 DrawIcon
 0x11e6d98 DrawFrameControl
 0x11e6da0 DrawFocusRect
 0x11e6da8 DrawEdge
 0x11e6db0 DispatchMessageA
 0x11e6db8 DispatchMessageW
 0x11e6dc0 DestroyWindow
 0x11e6dc8 DestroyMenu
 0x11e6dd0 DestroyIcon
 0x11e6dd8 DestroyCursor
 0x11e6de0 DeleteMenu
 0x11e6de8 DefWindowProcW
 0x11e6df0 DefMDIChildProcW
 0x11e6df8 DefFrameProcW
 0x11e6e00 CreatePopupMenu
 0x11e6e08 CreateMenu
 0x11e6e10 CreateIcon
 0x11e6e18 CreateAcceleratorTableW
 0x11e6e20 CountClipboardFormats
 0x11e6e28 CopyImage
 0x11e6e30 CopyIcon
 0x11e6e38 CloseClipboard
 0x11e6e40 ClientToScreen
 0x11e6e48 CheckMenuItem
 0x11e6e50 CharUpperBuffW
 0x11e6e58 CharUpperW
 0x11e6e60 CharNextW
 0x11e6e68 CharLowerBuffW
 0x11e6e70 CharLowerW
 0x11e6e78 CallWindowProcW
 0x11e6e80 CallNextHookEx
 0x11e6e88 BeginPaint
 0x11e6e90 AppendMenuW
 0x11e6e98 AdjustWindowRectEx
 0x11e6ea0 ActivateKeyboardLayout
gdi32.dll
 0x11e6eb0 UnrealizeObject
 0x11e6eb8 TextOutW
 0x11e6ec0 StretchDIBits
 0x11e6ec8 StretchBlt
 0x11e6ed0 StartPage
 0x11e6ed8 StartDocW
 0x11e6ee0 SetWindowOrgEx
 0x11e6ee8 SetWinMetaFileBits
 0x11e6ef0 SetViewportOrgEx
 0x11e6ef8 SetTextColor
 0x11e6f00 SetTextAlign
 0x11e6f08 SetStretchBltMode
 0x11e6f10 SetRectRgn
 0x11e6f18 SetROP2
 0x11e6f20 SetPixel
 0x11e6f28 SetMapMode
 0x11e6f30 SetEnhMetaFileBits
 0x11e6f38 SetDIBits
 0x11e6f40 SetDIBColorTable
 0x11e6f48 SetBrushOrgEx
 0x11e6f50 SetBkMode
 0x11e6f58 SetBkColor
 0x11e6f60 SetAbortProc
 0x11e6f68 SelectPalette
 0x11e6f70 SelectObject
 0x11e6f78 SaveDC
 0x11e6f80 RoundRect
 0x11e6f88 RestoreDC
 0x11e6f90 ResizePalette
 0x11e6f98 Rectangle
 0x11e6fa0 RectVisible
 0x11e6fa8 RealizePalette
 0x11e6fb0 Polyline
 0x11e6fb8 Polygon
 0x11e6fc0 PolyBezierTo
 0x11e6fc8 PolyBezier
 0x11e6fd0 PlayEnhMetaFile
 0x11e6fd8 Pie
 0x11e6fe0 PatBlt
 0x11e6fe8 MoveToEx
 0x11e6ff0 MaskBlt
 0x11e6ff8 LineTo
 0x11e7000 IntersectClipRect
 0x11e7008 GetWindowOrgEx
 0x11e7010 GetWinMetaFileBits
 0x11e7018 GetTextMetricsW
 0x11e7020 GetTextExtentPointW
 0x11e7028 GetTextExtentPoint32W
 0x11e7030 GetSystemPaletteEntries
 0x11e7038 GetStockObject
 0x11e7040 GetRgnBox
 0x11e7048 GetRegionData
 0x11e7050 GetPixel
 0x11e7058 GetPaletteEntries
 0x11e7060 GetObjectA
 0x11e7068 GetObjectW
 0x11e7070 GetNearestPaletteIndex
 0x11e7078 GetEnhMetaFilePaletteEntries
 0x11e7080 GetEnhMetaFileHeader
 0x11e7088 GetEnhMetaFileDescriptionW
 0x11e7090 GetEnhMetaFileBits
 0x11e7098 GetDeviceCaps
 0x11e70a0 GetDIBits
 0x11e70a8 GetDIBColorTable
 0x11e70b0 GetCurrentPositionEx
 0x11e70b8 GetClipBox
 0x11e70c0 GetCharABCWidthsFloatW
 0x11e70c8 GetBrushOrgEx
 0x11e70d0 GetBitmapBits
 0x11e70d8 GdiFlush
 0x11e70e0 FrameRgn
 0x11e70e8 ExtTextOutW
 0x11e70f0 ExtFloodFill
 0x11e70f8 ExtCreateRegion
 0x11e7100 ExcludeClipRect
 0x11e7108 EnumFontsW
 0x11e7110 EnumFontFamiliesExW
 0x11e7118 EndPage
 0x11e7120 EndDoc
 0x11e7128 Ellipse
 0x11e7130 DeleteObject
 0x11e7138 DeleteEnhMetaFile
 0x11e7140 DeleteDC
 0x11e7148 CreateSolidBrush
 0x11e7150 CreateRectRgn
 0x11e7158 CreatePenIndirect
 0x11e7160 CreatePalette
 0x11e7168 CreateICW
 0x11e7170 CreateHalftonePalette
 0x11e7178 CreateFontIndirectW
 0x11e7180 CreateFontW
 0x11e7188 CreateDIBitmap
 0x11e7190 CreateDIBSection
 0x11e7198 CreateDCW
 0x11e71a0 CreateCompatibleDC
 0x11e71a8 CreateCompatibleBitmap
 0x11e71b0 CreateBrushIndirect
 0x11e71b8 CreateBitmap
 0x11e71c0 CopyEnhMetaFileW
 0x11e71c8 CombineRgn
 0x11e71d0 Chord
 0x11e71d8 BitBlt
 0x11e71e0 ArcTo
 0x11e71e8 Arc
 0x11e71f0 AngleArc
 0x11e71f8 AbortDoc
version.dll
 0x11e7208 VerQueryValueW
 0x11e7210 GetFileVersionInfoSizeW
 0x11e7218 GetFileVersionInfoW
kernel32.dll
 0x11e7228 lstrlenW
 0x11e7230 WritePrivateProfileStringW
 0x11e7238 WriteFile
 0x11e7240 WideCharToMultiByte
 0x11e7248 WaitForSingleObject
 0x11e7250 WaitForMultipleObjectsEx
 0x11e7258 VirtualQueryEx
 0x11e7260 VirtualQuery
 0x11e7268 VirtualProtect
 0x11e7270 VirtualFree
 0x11e7278 VirtualAlloc
 0x11e7280 VerSetConditionMask
 0x11e7288 VerifyVersionInfoW
 0x11e7290 UnmapViewOfFile
 0x11e7298 TryEnterCriticalSection
 0x11e72a0 SwitchToThread
 0x11e72a8 SuspendThread
 0x11e72b0 Sleep
 0x11e72b8 SizeofResource
 0x11e72c0 SetThreadPriority
 0x11e72c8 SetThreadLocale
 0x11e72d0 SetLastError
 0x11e72d8 SetFilePointer
 0x11e72e0 SetEvent
 0x11e72e8 SetErrorMode
 0x11e72f0 SetEndOfFile
 0x11e72f8 ResumeThread
 0x11e7300 ResetEvent
 0x11e7308 RemoveDirectoryW
 0x11e7310 ReadFile
 0x11e7318 RaiseException
 0x11e7320 QueryPerformanceFrequency
 0x11e7328 QueryPerformanceCounter
 0x11e7330 QueryDosDeviceW
 0x11e7338 IsDebuggerPresent
 0x11e7340 OutputDebugStringW
 0x11e7348 MulDiv
 0x11e7350 MapViewOfFile
 0x11e7358 LockResource
 0x11e7360 LocalFree
 0x11e7368 LoadResource
 0x11e7370 LoadLibraryW
 0x11e7378 LeaveCriticalSection
 0x11e7380 LCMapStringW
 0x11e7388 IsValidLocale
 0x11e7390 InitializeCriticalSection
 0x11e7398 HeapSize
 0x11e73a0 HeapFree
 0x11e73a8 HeapDestroy
 0x11e73b0 HeapCreate
 0x11e73b8 HeapAlloc
 0x11e73c0 GlobalUnlock
 0x11e73c8 GlobalSize
 0x11e73d0 GlobalHandle
 0x11e73d8 GlobalLock
 0x11e73e0 GlobalFree
 0x11e73e8 GlobalFindAtomW
 0x11e73f0 GlobalDeleteAtom
 0x11e73f8 GlobalAlloc
 0x11e7400 GlobalAddAtomW
 0x11e7408 GetVolumeInformationW
 0x11e7410 GetVersionExW
 0x11e7418 GetVersion
 0x11e7420 GetUserDefaultLCID
 0x11e7428 GetTimeZoneInformation
 0x11e7430 GetTickCount
 0x11e7438 GetThreadPriority
 0x11e7440 GetThreadLocale
 0x11e7448 GetTempPathW
 0x11e7450 GetTempFileNameW
 0x11e7458 GetSystemDirectoryW
 0x11e7460 GetStdHandle
 0x11e7468 GetLongPathNameW
 0x11e7470 GetProcAddress
 0x11e7478 GetPrivateProfileStringW
 0x11e7480 GetModuleHandleW
 0x11e7488 GetModuleFileNameW
 0x11e7490 GetLogicalDriveStringsW
 0x11e7498 GetLocaleInfoW
 0x11e74a0 GetLocalTime
 0x11e74a8 GetLastError
 0x11e74b0 GetFullPathNameW
 0x11e74b8 GetFileSize
 0x11e74c0 GetFileAttributesExW
 0x11e74c8 GetFileAttributesW
 0x11e74d0 GetExitCodeThread
 0x11e74d8 GetDriveTypeW
 0x11e74e0 GetDiskFreeSpaceW
 0x11e74e8 GetDateFormatW
 0x11e74f0 GetCurrentThreadId
 0x11e74f8 GetCurrentThread
 0x11e7500 GetCurrentProcessId
 0x11e7508 GetCurrentProcess
 0x11e7510 GetComputerNameW
 0x11e7518 GetCPInfoExW
 0x11e7520 GetCPInfo
 0x11e7528 GetACP
 0x11e7530 FreeResource
 0x11e7538 FreeLibrary
 0x11e7540 FormatMessageW
 0x11e7548 FindResourceW
 0x11e7550 FindNextFileW
 0x11e7558 FindFirstFileW
 0x11e7560 FindClose
 0x11e7568 FileTimeToSystemTime
 0x11e7570 FileTimeToLocalFileTime
 0x11e7578 FileTimeToDosDateTime
 0x11e7580 ExpandEnvironmentStringsW
 0x11e7588 EnumSystemLocalesW
 0x11e7590 EnumResourceNamesW
 0x11e7598 EnumCalendarInfoW
 0x11e75a0 EnterCriticalSection
 0x11e75a8 DeleteFileW
 0x11e75b0 DeleteCriticalSection
 0x11e75b8 CreateThread
 0x11e75c0 CreateFileMappingW
 0x11e75c8 CreateFileW
 0x11e75d0 CreateEventW
 0x11e75d8 CreateDirectoryW
 0x11e75e0 CopyFileW
 0x11e75e8 CompareStringA
 0x11e75f0 CompareStringW
 0x11e75f8 CloseHandle
advapi32.dll
 0x11e7608 RegUnLoadKeyW
 0x11e7610 RegSetValueExW
 0x11e7618 RegSaveKeyW
 0x11e7620 RegRestoreKeyW
 0x11e7628 RegReplaceKeyW
 0x11e7630 RegQueryValueExW
 0x11e7638 RegQueryInfoKeyW
 0x11e7640 RegOpenKeyExW
 0x11e7648 RegLoadKeyW
 0x11e7650 RegFlushKey
 0x11e7658 RegEnumValueW
 0x11e7660 RegEnumKeyW
 0x11e7668 RegEnumKeyExW
 0x11e7670 RegDeleteValueW
 0x11e7678 RegDeleteKeyW
 0x11e7680 RegCreateKeyExW
 0x11e7688 RegConnectRegistryW
 0x11e7690 RegCloseKey
kernel32.dll
 0x11e76a0 Sleep
oleaut32.dll
 0x11e76b0 SafeArrayGetElemsize
 0x11e76b8 SafeArrayPtrOfIndex
 0x11e76c0 SafeArrayPutElement
 0x11e76c8 SafeArrayGetElement
 0x11e76d0 SafeArrayUnaccessData
 0x11e76d8 SafeArrayAccessData
 0x11e76e0 SafeArrayGetUBound
 0x11e76e8 SafeArrayGetLBound
 0x11e76f0 SafeArrayCreate
 0x11e76f8 VariantChangeType
 0x11e7700 VariantCopyInd
 0x11e7708 VariantCopy
 0x11e7710 VariantClear
 0x11e7718 VariantInit
oleaut32.dll
 0x11e7728 GetErrorInfo
 0x11e7730 SysFreeString
ole32.dll
 0x11e7740 CreateStreamOnHGlobal
 0x11e7748 ReleaseStgMedium
 0x11e7750 OleDraw
 0x11e7758 DoDragDrop
 0x11e7760 RevokeDragDrop
 0x11e7768 RegisterDragDrop
 0x11e7770 OleUninitialize
 0x11e7778 OleInitialize
 0x11e7780 CoTaskMemFree
 0x11e7788 CoTaskMemAlloc
 0x11e7790 CoCreateInstance
 0x11e7798 CoGetClassObject
 0x11e77a0 CoUninitialize
 0x11e77a8 CoInitialize
 0x11e77b0 IsEqualGUID
comctl32.dll
 0x11e77c0 InitializeFlatSB
 0x11e77c8 FlatSB_SetScrollProp
 0x11e77d0 FlatSB_SetScrollPos
 0x11e77d8 FlatSB_SetScrollInfo
 0x11e77e0 FlatSB_GetScrollPos
 0x11e77e8 FlatSB_GetScrollInfo
 0x11e77f0 _TrackMouseEvent
 0x11e77f8 ImageList_GetImageInfo
 0x11e7800 ImageList_SetIconSize
 0x11e7808 ImageList_GetIconSize
 0x11e7810 ImageList_Write
 0x11e7818 ImageList_Read
 0x11e7820 ImageList_GetDragImage
 0x11e7828 ImageList_DragShowNolock
 0x11e7830 ImageList_DragMove
 0x11e7838 ImageList_DragLeave
 0x11e7840 ImageList_DragEnter
 0x11e7848 ImageList_EndDrag
 0x11e7850 ImageList_BeginDrag
 0x11e7858 ImageList_Copy
 0x11e7860 ImageList_LoadImageW
 0x11e7868 ImageList_GetIcon
 0x11e7870 ImageList_Remove
 0x11e7878 ImageList_DrawEx
 0x11e7880 ImageList_Replace
 0x11e7888 ImageList_Draw
 0x11e7890 ImageList_SetOverlayImage
 0x11e7898 ImageList_GetBkColor
 0x11e78a0 ImageList_SetBkColor
 0x11e78a8 ImageList_ReplaceIcon
 0x11e78b0 ImageList_Add
 0x11e78b8 ImageList_SetImageCount
 0x11e78c0 ImageList_GetImageCount
 0x11e78c8 ImageList_Destroy
 0x11e78d0 ImageList_Create
user32.dll
 0x11e78e0 EnumDisplayMonitors
 0x11e78e8 GetMonitorInfoW
 0x11e78f0 MonitorFromPoint
 0x11e78f8 MonitorFromRect
 0x11e7900 MonitorFromWindow
msvcrt.dll
 0x11e7910 isxdigit
 0x11e7918 isupper
 0x11e7920 isspace
 0x11e7928 ispunct
 0x11e7930 isprint
 0x11e7938 islower
 0x11e7940 isgraph
 0x11e7948 isdigit
 0x11e7950 iscntrl
 0x11e7958 isalpha
 0x11e7960 isalnum
 0x11e7968 toupper
 0x11e7970 tolower
 0x11e7978 strchr
 0x11e7980 strncmp
 0x11e7988 memset
 0x11e7990 memcpy
 0x11e7998 memcmp
shell32.dll
 0x11e79a8 ShellExecuteW
 0x11e79b0 Shell_NotifyIconW
 0x11e79b8 DragQueryFileW
shell32.dll
 0x11e79c8 SHGetSpecialFolderPathW
comdlg32.dll
 0x11e79d8 PageSetupDlgW
 0x11e79e0 PrintDlgW
 0x11e79e8 GetSaveFileNameW
 0x11e79f0 GetOpenFileNameW
winspool.drv
 0x11e7a00 SetPrinterW
 0x11e7a08 OpenPrinterW
 0x11e7a10 GetPrinterW
 0x11e7a18 GetDefaultPrinterW
 0x11e7a20 EnumPrintersW
 0x11e7a28 DocumentPropertiesW
 0x11e7a30 DeviceCapabilitiesW
 0x11e7a38 ClosePrinter
winspool.drv
 0x11e7a48 GetDefaultPrinterW
winmm.dll
 0x11e7a58 timeGetTime
d3d9.dll
 0x11e7a68 Direct3DCreate9

EAT(Export Address Table) Library

0x4a9be0 TMethodImplementationIntercept
0x419660 __dbk_fcall_wrapper
0x11c8f58 dbkFCallWrapperAddr


Similarity measure (PE file only) - Checking for service failure