Report - 1.exe

Generic Malware Malicious Library UPX PE File PE32 OS Processor Check
ScreenShot
Created 2024.10.29 17:15 Machine s1_win7_x6401
Filename 1.exe
Type PE32 executable (GUI) Intel 80386, for MS Windows
AI Score Not founds Behavior Score
1.6
ZERO API file : clean
VT API (file) 2 detected (BScope)
md5 1db00ee7f85164f081e7cf05d7fa08a9
sha256 a428a19abb6b3df11ef0abb1b0766df0b431400b362c1227f81ae3912f01d95c
ssdeep 98304:QxPDFz2Q0zP4KwiMGbWkGkHJA6WHV6Xq2jUJqRdy:ePDFz2Q0zrwSdPm16Xq2vry
imphash 11bfb7711dcf2c49f28df357345e9386
impfuzzy 384:ZWVMu/Lb4QNGJOVLsjUAZN8Nky6Jtv2aFnqUo6LWe:ZS/Lbt9sY08wqBe
  Network IP location

Signature (5cnts)

Level Description
notice Allocates read-write-execute memory (usually to unpack itself)
notice File has been identified by 2 AntiVirus engines on VirusTotal as malicious
notice The binary likely contains encrypted or compressed data indicative of a packer
info The file contains an unknown PE resource name possibly indicative of a packer
info This executable has a PDB path

Rules (6cnts)

Level Name Description Collection
warning Generic_Malware_Zero Generic Malware binaries (upload)
watch Malicious_Library_Zero Malicious_Library binaries (upload)
watch UPX_Zero UPX packed file binaries (upload)
info IsPE32 (no description) binaries (upload)
info OS_Processor_Check_Zero OS Processor Check binaries (upload)
info PE_Header_Zero PE File Signature binaries (upload)

Network (0cnts) ?

Request CC ASN Co IP4 Rule ? ZERO ?

Suricata ids

PE API

IAT(Import Address Table) Library

OPENGL32.dll
 0x6955a0 wglGetProcAddress
 0x6955a4 glColor4d
 0x6955a8 glLoadMatrixf
 0x6955ac glDepthMask
 0x6955b0 glViewport
 0x6955b4 wglMakeCurrent
 0x6955b8 glLoadIdentity
 0x6955bc glGetError
 0x6955c0 wglDeleteContext
 0x6955c4 glVertex2d
 0x6955c8 wglCreateContext
 0x6955cc wglGetCurrentContext
 0x6955d0 glBegin
 0x6955d4 glClearColor
 0x6955d8 glBindTexture
 0x6955dc glEnd
 0x6955e0 glDepthRange
 0x6955e4 glColor4f
 0x6955e8 glMatrixMode
 0x6955ec glClearDepth
 0x6955f0 glTexCoord2d
 0x6955f4 glTexImage2D
 0x6955f8 glFlush
 0x6955fc glTexParameteri
 0x695600 glVertex3d
 0x695604 glGetString
 0x695608 glDeleteTextures
 0x69560c glGenTextures
 0x695610 glReadPixels
 0x695614 wglGetCurrentDC
 0x695618 glReadBuffer
 0x69561c glStencilOp
 0x695620 glEnable
 0x695624 glClearStencil
 0x695628 glDisable
 0x69562c glBlendFunc
 0x695630 glGetIntegerv
 0x695634 glClear
 0x695638 glStencilFunc
 0x69563c glDepthFunc
 0x695640 glColorMask
KERNEL32.dll
 0x695218 SetEnvironmentVariableW
 0x69521c GetShortPathNameW
 0x695220 GetLogicalDriveStringsW
 0x695224 GetTimeFormatW
 0x695228 SetUnhandledExceptionFilter
 0x69522c SuspendThread
 0x695230 GetModuleHandleW
 0x695234 CreateFileMappingW
 0x695238 WaitNamedPipeW
 0x69523c PeekNamedPipe
 0x695240 GetOverlappedResult
 0x695244 ReleaseMutex
 0x695248 MapViewOfFile
 0x69524c ResumeThread
 0x695250 CreateThread
 0x695254 GetEnvironmentVariableA
 0x695258 Process32FirstW
 0x69525c GetLocaleInfoW
 0x695260 SetLastError
 0x695264 GetACP
 0x695268 GetPrivateProfileSectionNamesW
 0x69526c GlobalHandle
 0x695270 VirtualQuery
 0x695274 GetCommandLineW
 0x695278 ConnectNamedPipe
 0x69527c DuplicateHandle
 0x695280 HeapFree
 0x695284 ProcessIdToSessionId
 0x695288 ReadProcessMemory
 0x69528c CancelIo
 0x695290 GetSystemTime
 0x695294 UnmapViewOfFile
 0x695298 LocalFileTimeToFileTime
 0x69529c GetFileSize
 0x6952a0 LoadLibraryExW
 0x6952a4 GetUserDefaultLCID
 0x6952a8 GetLocaleInfoA
 0x6952ac GetGeoInfoW
 0x6952b0 GetUserGeoID
 0x6952b4 SystemTimeToTzSpecificLocalTime
 0x6952b8 GetPrivateProfileIntW
 0x6952bc GlobalAlloc
 0x6952c0 LocalFree
 0x6952c4 GlobalMemoryStatusEx
 0x6952c8 GetTimeZoneInformation
 0x6952cc CreateToolhelp32Snapshot
 0x6952d0 GetProcessHeap
 0x6952d4 RemoveDirectoryW
 0x6952d8 GetComputerNameW
 0x6952dc GetDateFormatW
 0x6952e0 GetStartupInfoW
 0x6952e4 SetFileTime
 0x6952e8 GetCurrentDirectoryW
 0x6952ec RtlCaptureContext
 0x6952f0 CreatePipe
 0x6952f4 lstrcmpW
 0x6952f8 GetDiskFreeSpaceExW
 0x6952fc LockResource
 0x695300 WriteConsoleA
 0x695304 GetCPInfo
 0x695308 WaitForMultipleObjects
 0x69530c FileTimeToLocalFileTime
 0x695310 GetModuleFileNameA
 0x695314 SetEndOfFile
 0x695318 CreateMutexW
 0x69531c LocalAlloc
 0x695320 GetModuleFileNameW
 0x695324 GetCurrentProcess
 0x695328 GetCurrentDirectoryA
 0x69532c GetEnvironmentVariableW
 0x695330 GetVersionExA
 0x695334 FileTimeToSystemTime
 0x695338 SystemTimeToFileTime
 0x69533c GetThreadContext
 0x695340 GetLastError
 0x695344 ExitProcess
 0x695348 GetExitCodeProcess
 0x69534c SetThreadExecutionState
 0x695350 TerminateProcess
 0x695354 HeapAlloc
 0x695358 GetPrivateProfileStringW
 0x69535c DeviceIoControl
 0x695360 GetCurrentProcessId
 0x695364 GlobalSize
 0x695368 GetDriveTypeW
 0x69536c Process32NextW
 0x695370 GetStdHandle
 0x695374 CreateNamedPipeW
 0x695378 DeleteCriticalSection
 0x69537c LeaveCriticalSection
 0x695380 CloseHandle
 0x695384 GetTempPathW
 0x695388 FreeLibrary
 0x69538c FlushFileBuffers
 0x695390 GetFileSizeEx
 0x695394 GetVersionExW
 0x695398 InitializeCriticalSection
 0x69539c FreeResource
 0x6953a0 InterlockedDecrement
 0x6953a4 MulDiv
 0x6953a8 CopyFileW
 0x6953ac GlobalFree
 0x6953b0 SetEvent
 0x6953b4 MultiByteToWideChar
 0x6953b8 InterlockedExchange
 0x6953bc GetFileAttributesW
 0x6953c0 GetFileTime
 0x6953c4 MoveFileW
 0x6953c8 Sleep
 0x6953cc WideCharToMultiByte
 0x6953d0 LoadLibraryW
 0x6953d4 GetEnvironmentStrings
 0x6953d8 FreeEnvironmentStringsW
 0x6953dc GetEnvironmentStringsW
 0x6953e0 lstrlenA
 0x6953e4 FindClose
 0x6953e8 SizeofResource
 0x6953ec GlobalLock
 0x6953f0 FindResourceW
 0x6953f4 CreateProcessW
 0x6953f8 GetSystemInfo
 0x6953fc MoveFileExW
 0x695400 SetFileAttributesW
 0x695404 GetCurrentThread
 0x695408 VerSetConditionMask
 0x69540c DeleteFileW
 0x695410 LoadResource
 0x695414 QueryPerformanceFrequency
 0x695418 SetCurrentDirectoryW
 0x69541c VerifyVersionInfoW
 0x695420 DisconnectNamedPipe
 0x695424 GetCurrentThreadId
 0x695428 SetThreadPriority
 0x69542c FindFirstFileW
 0x695430 CreateFileW
 0x695434 EnterCriticalSection
 0x695438 WriteFile
 0x69543c GetThreadPriority
 0x695440 GlobalUnlock
 0x695444 ResetEvent
 0x695448 GetLongPathNameW
 0x69544c ReadFile
 0x695450 CreateEventW
 0x695454 CreateDirectoryW
 0x695458 InterlockedIncrement
 0x69545c LoadLibraryA
 0x695460 InterlockedExchangeAdd
 0x695464 SetFilePointer
 0x695468 OpenProcess
 0x69546c QueryPerformanceCounter
 0x695470 GetTickCount
 0x695474 FindNextFileW
 0x695478 WaitForSingleObject
 0x69547c SetFilePointerEx
 0x695480 GetProcAddress
 0x695484 FreeEnvironmentStringsA
 0x695488 RaiseException
 0x69548c VirtualAlloc
 0x695490 VirtualFree
 0x695494 HeapCreate
 0x695498 HeapDestroy
 0x69549c GetStringTypeW
 0x6954a0 GetStringTypeA
 0x6954a4 IsValidLocale
 0x6954a8 EnumSystemLocalesA
 0x6954ac HeapSize
 0x6954b0 LCMapStringW
 0x6954b4 LCMapStringA
 0x6954b8 TlsFree
 0x6954bc TlsSetValue
 0x6954c0 TlsAlloc
 0x6954c4 TlsGetValue
 0x6954c8 GetModuleHandleA
 0x6954cc IsValidCodePage
 0x6954d0 GetOEMCP
 0x6954d4 GetStartupInfoA
 0x6954d8 GetCommandLineA
 0x6954dc IsDebuggerPresent
 0x6954e0 HeapReAlloc
 0x6954e4 UnhandledExceptionFilter
 0x6954e8 GetSystemTimeAsFileTime
 0x6954ec SetStdHandle
 0x6954f0 GetConsoleMode
 0x6954f4 GetConsoleCP
 0x6954f8 RtlUnwind
 0x6954fc GetFileType
 0x695500 lstrcpyW
 0x695504 GetConsoleOutputCP
 0x695508 WriteConsoleW
 0x69550c CompareStringA
 0x695510 CompareStringW
 0x695514 SetEnvironmentVariableA
 0x695518 CreateFileA
 0x69551c SetHandleCount
ADVAPI32.dll
 0x695000 RegSetValueExW
 0x695004 GetSidSubAuthority
 0x695008 RegCreateKeyExW
 0x69500c GetAce
 0x695010 DuplicateTokenEx
 0x695014 CryptAcquireContextW
 0x695018 CryptDeriveKey
 0x69501c RegEnumKeyExW
 0x695020 RegOpenKeyExW
 0x695024 CheckTokenMembership
 0x695028 RegDeleteValueW
 0x69502c CryptDestroyKey
 0x695030 RegQueryValueExW
 0x695034 InitializeSecurityDescriptor
 0x695038 CryptHashData
 0x69503c CryptCreateHash
 0x695040 CryptDestroyHash
 0x695044 SetSecurityDescriptorDacl
 0x695048 FreeSid
 0x69504c ConvertSidToStringSidW
 0x695050 RegEnumValueW
 0x695054 RegEnumKeyW
 0x695058 CryptDuplicateKey
 0x69505c AllocateAndInitializeSid
 0x695060 CryptDecrypt
 0x695064 InitializeAcl
 0x695068 RegOpenKeyW
 0x69506c RegSetKeySecurity
 0x695070 OpenProcessToken
 0x695074 RegCloseKey
 0x695078 AddAccessAllowedAce
 0x69507c GetSidLengthRequired
 0x695080 CryptEncrypt
 0x695084 GetTokenInformation
 0x695088 InitializeSid
 0x69508c RegQueryInfoKeyW
 0x695090 RegDeleteKeyW
 0x695094 SetFileSecurityW
 0x695098 GetUserNameW
COMCTL32.dll
 0x6950a0 ImageList_GetIcon
 0x6950a4 CreatePropertySheetPageW
 0x6950a8 _TrackMouseEvent
 0x6950ac PropertySheetW
 0x6950b0 ImageList_Add
 0x6950b4 None
 0x6950b8 ImageList_ReplaceIcon
 0x6950bc ImageList_Create
 0x6950c0 InitCommonControlsEx
 0x6950c4 ImageList_GetImageCount
 0x6950c8 ImageList_GetIconSize
 0x6950cc ImageList_AddMasked
 0x6950d0 ImageList_Destroy
 0x6950d4 ImageList_DrawEx
comdlg32.dll
 0x695ae4 GetSaveFileNameW
 0x695ae8 GetOpenFileNameW
GDI32.dll
 0x695100 SetBkMode
 0x695104 BitBlt
 0x695108 FillRgn
 0x69510c SetROP2
 0x695110 GetCurrentObject
 0x695114 SetBrushOrgEx
 0x695118 CreateHatchBrush
 0x69511c GetTextMetricsW
 0x695120 SetDIBits
 0x695124 StretchBlt
 0x695128 SetStretchBltMode
 0x69512c GetStockObject
 0x695130 GetDeviceCaps
 0x695134 DeleteObject
 0x695138 SetPixel
 0x69513c DeleteDC
 0x695140 Ellipse
 0x695144 GetGlyphOutlineW
 0x695148 PolyPolyline
 0x69514c CreateSolidBrush
 0x695150 CreateCompatibleDC
 0x695154 GetBkMode
 0x695158 TextOutW
 0x69515c GetKerningPairsW
 0x695160 GetTextCharset
 0x695164 GetObjectW
 0x695168 MoveToEx
 0x69516c CreateFontW
 0x695170 CreatePolygonRgn
 0x695174 CreateFontIndirectW
 0x695178 ExtTextOutW
 0x69517c ChoosePixelFormat
 0x695180 SetBitmapBits
 0x695184 GetTextMetricsA
 0x695188 SetWindowExtEx
 0x69518c SetDIBitsToDevice
 0x695190 GetObjectA
 0x695194 SetViewportExtEx
 0x695198 CreateDIBSection
 0x69519c CreateRectRgn
 0x6951a0 CreateBrushIndirect
 0x6951a4 SetPixelFormat
 0x6951a8 DescribePixelFormat
 0x6951ac GetViewportExtEx
 0x6951b0 SetBkColor
 0x6951b4 GetOutlineTextMetricsW
 0x6951b8 GetTextExtentPoint32W
 0x6951bc CreateDIBitmap
 0x6951c0 GetDIBits
 0x6951c4 PatBlt
 0x6951c8 CreateBitmap
 0x6951cc GetWindowExtEx
 0x6951d0 SetDCBrushColor
 0x6951d4 CombineRgn
 0x6951d8 SelectObject
 0x6951dc SetTextColor
 0x6951e0 Polyline
 0x6951e4 CreateRectRgnIndirect
 0x6951e8 LineTo
 0x6951ec CreatePatternBrush
 0x6951f0 Polygon
 0x6951f4 CreateCompatibleBitmap
 0x6951f8 CreatePen
 0x6951fc EnumFontFamiliesExW
 0x695200 SetTextAlign
 0x695204 GetBitmapBits
 0x695208 Rectangle
 0x69520c PolyTextOutW
 0x695210 PolyDraw
MSACM32.dll
 0x695524 acmStreamSize
 0x695528 acmStreamConvert
 0x69552c acmDriverEnum
 0x695530 acmFormatEnumW
 0x695534 acmDriverOpen
 0x695538 acmFormatTagEnumW
 0x69553c acmStreamOpen
 0x695540 acmDriverClose
 0x695544 acmFormatDetailsW
 0x695548 acmStreamClose
 0x69554c acmDriverDetailsW
 0x695550 acmStreamUnprepareHeader
 0x695554 acmStreamPrepareHeader
ole32.dll
 0x695d90 CoTaskMemFree
 0x695d94 CoInitialize
 0x695d98 CreateStreamOnHGlobal
 0x695d9c CoCreateInstance
 0x695da0 CoRegisterClassObject
 0x695da4 CoSetProxyBlanket
 0x695da8 CoRevokeClassObject
 0x695dac CoResumeClassObjects
 0x695db0 CLSIDFromProgID
 0x695db4 CoInitializeSecurity
 0x695db8 RegisterDragDrop
 0x695dbc DoDragDrop
 0x695dc0 ReleaseStgMedium
 0x695dc4 CoAddRefServerProcess
 0x695dc8 OleInitialize
 0x695dcc OleUninitialize
 0x695dd0 CoUninitialize
 0x695dd4 CoTaskMemAlloc
 0x695dd8 CoGetMalloc
OLEAUT32.dll
 0x695574 OleCreatePropertyFrame
 0x695578 SysStringByteLen
 0x69557c VariantClear
 0x695580 SysAllocString
 0x695584 SysFreeString
 0x695588 SysAllocStringLen
 0x69558c SysAllocStringByteLen
 0x695590 OleLoadPicture
 0x695594 VariantInit
 0x695598 OleLoadPicturePath
SHELL32.dll
 0x69565c None
 0x695660 ShellExecuteW
 0x695664 DragQueryFileW
 0x695668 SHGetFolderPathW
 0x69566c SHBrowseForFolderW
 0x695670 SHGetPathFromIDListW
 0x695674 DragAcceptFiles
 0x695678 Shell_NotifyIconW
 0x69567c SHCreateShellItem
 0x695680 DragFinish
 0x695684 SHGetMalloc
 0x695688 SHGetDesktopFolder
 0x69568c CommandLineToArgvW
 0x695690 SHParseDisplayName
 0x695694 None
 0x695698 SHChangeNotify
 0x69569c SHEmptyRecycleBinW
 0x6956a0 ShellExecuteA
 0x6956a4 ShellExecuteExW
SHLWAPI.dll
 0x6956ac PathCompactPathExW
 0x6956b0 SHDeleteKeyW
 0x6956b4 SHDeleteEmptyKeyW
 0x6956b8 StrCmpLogicalW
 0x6956bc PathRelativePathToW
USER32.dll
 0x6956ec InsertMenuW
 0x6956f0 CheckMenuItem
 0x6956f4 SetWindowTextW
 0x6956f8 CreateDialogIndirectParamW
 0x6956fc GetDC
 0x695700 SetFocus
 0x695704 GetCursor
 0x695708 IsWindowVisible
 0x69570c CheckDlgButton
 0x695710 GetSystemMetrics
 0x695714 UnhookWindowsHookEx
 0x695718 PeekMessageW
 0x69571c EndPaint
 0x695720 DestroyMenu
 0x695724 CreatePopupMenu
 0x695728 DialogBoxParamW
 0x69572c PostMessageW
 0x695730 FrameRect
 0x695734 DrawTextExW
 0x695738 RemovePropW
 0x69573c RedrawWindow
 0x695740 ModifyMenuW
 0x695744 GetScrollInfo
 0x695748 TrackPopupMenu
 0x69574c SetActiveWindow
 0x695750 DefWindowProcW
 0x695754 EnableMenuItem
 0x695758 DispatchMessageW
 0x69575c CheckRadioButton
 0x695760 SendDlgItemMessageW
 0x695764 DrawIconEx
 0x695768 SetTimer
 0x69576c GetSysColor
 0x695770 LoadImageW
 0x695774 GetDlgCtrlID
 0x695778 MessageBoxW
 0x69577c LoadCursorW
 0x695780 CallWindowProcW
 0x695784 IsWindow
 0x695788 IsWindowEnabled
 0x69578c GetFocus
 0x695790 MoveWindow
 0x695794 GetPropW
 0x695798 ReleaseDC
 0x69579c CopyImage
 0x6957a0 ShowWindow
 0x6957a4 SetWindowLongW
 0x6957a8 GetClassNameW
 0x6957ac MapDialogRect
 0x6957b0 DestroyIcon
 0x6957b4 DestroyWindow
 0x6957b8 ClientToScreen
 0x6957bc IsZoomed
 0x6957c0 ChildWindowFromPoint
 0x6957c4 EndMenu
 0x6957c8 SetWindowWord
 0x6957cc DrawEdge
 0x6957d0 GetMenuStringW
 0x6957d4 GetNextDlgGroupItem
 0x6957d8 CloseClipboard
 0x6957dc RegisterClassW
 0x6957e0 LoadIconW
 0x6957e4 AdjustWindowRectEx
 0x6957e8 MonitorFromWindow
 0x6957ec WindowFromPoint
 0x6957f0 ValidateRect
 0x6957f4 LoadStringW
 0x6957f8 RegisterWindowMessageW
 0x6957fc SetMenuInfo
 0x695800 GetSubMenu
 0x695804 CreateDialogParamW
 0x695808 InvalidateRgn
 0x69580c SystemParametersInfoW
 0x695810 GetMessagePos
 0x695814 wsprintfW
 0x695818 SetClipboardData
 0x69581c GetMenuInfo
 0x695820 InflateRect
 0x695824 GetClipboardData
 0x695828 keybd_event
 0x69582c GetWindow
 0x695830 EndDialog
 0x695834 NotifyWinEvent
 0x695838 GetAsyncKeyState
 0x69583c GetWindowTextW
 0x695840 GetClassInfoW
 0x695844 SetForegroundWindow
 0x695848 SetMenu
 0x69584c IsDialogMessageW
 0x695850 GetMessageW
 0x695854 OpenClipboard
 0x695858 OffsetRect
 0x69585c FlashWindowEx
 0x695860 IsClipboardFormatAvailable
 0x695864 GetMonitorInfoW
 0x695868 ShowScrollBar
 0x69586c EnumChildWindows
 0x695870 DialogBoxIndirectParamW
 0x695874 GetWindowThreadProcessId
 0x695878 GetKeyboardState
 0x69587c GetUpdateRect
 0x695880 GetMenuItemInfoW
 0x695884 GetMenuBarInfo
 0x695888 FindWindowExW
 0x69588c GetIconInfo
 0x695890 MapVirtualKeyW
 0x695894 FindWindowW
 0x695898 GetAncestor
 0x69589c GetClassNameA
 0x6958a0 EnumDisplayMonitors
 0x6958a4 GetKeyNameTextW
 0x6958a8 CreateIconIndirect
 0x6958ac SetWindowPlacement
 0x6958b0 GetDlgItemTextW
 0x6958b4 AllowSetForegroundWindow
 0x6958b8 IsCharAlphaW
 0x6958bc WindowFromDC
 0x6958c0 TranslateMessage
 0x6958c4 GetSysColorBrush
 0x6958c8 AttachThreadInput
 0x6958cc CallNextHookEx
 0x6958d0 GetDialogBaseUnits
 0x6958d4 EqualRect
 0x6958d8 PtInRect
 0x6958dc DrawFocusRect
 0x6958e0 GetActiveWindow
 0x6958e4 GetComboBoxInfo
 0x6958e8 DrawStateW
 0x6958ec EmptyClipboard
 0x6958f0 GetWindowWord
 0x6958f4 SetMenuDefaultItem
 0x6958f8 EnumWindows
 0x6958fc RegisterClipboardFormatW
 0x695900 MonitorFromPoint
 0x695904 SetMenuItemBitmaps
 0x695908 GetWindowLongW
 0x69590c SetWindowsHookExW
 0x695910 SetClassLongW
 0x695914 MapWindowPoints
 0x695918 SetScrollInfo
 0x69591c AppendMenuW
 0x695920 DestroyCursor
 0x695924 VkKeyScanW
 0x695928 GetCapture
 0x69592c CreateWindowExW
 0x695930 ScreenToClient
 0x695934 DrawTextW
 0x695938 ReleaseCapture
 0x69593c GetDlgItemInt
 0x695940 GetWindowPlacement
 0x695944 GetWindowRect
 0x695948 KillTimer
 0x69594c IsIconic
 0x695950 SetCapture
 0x695954 AdjustWindowRect
 0x695958 SetPropW
 0x69595c GetParent
 0x695960 InvalidateRect
 0x695964 FillRect
 0x695968 WaitForInputIdle
 0x69596c GetDlgItem
 0x695970 GetCursorInfo
 0x695974 RemoveMenu
 0x695978 BeginPaint
 0x69597c GetForegroundWindow
 0x695980 IsDlgButtonChecked
 0x695984 GetKeyState
 0x695988 SetDlgItemTextW
 0x69598c SetWindowPos
 0x695990 GetWindowDC
 0x695994 PostQuitMessage
 0x695998 SetCursor
 0x69599c SetDlgItemInt
 0x6959a0 GetDesktopWindow
 0x6959a4 UpdateWindow
 0x6959a8 MsgWaitForMultipleObjects
 0x6959ac GetWindowTextLengthW
 0x6959b0 EnableWindow
 0x6959b4 GetScrollBarInfo
 0x6959b8 SetMenuItemInfoW
 0x6959bc GetSystemMenu
 0x6959c0 InsertMenuItemW
 0x6959c4 CheckMenuRadioItem
 0x6959c8 DeleteMenu
 0x6959cc GetClientRect
 0x6959d0 ScrollWindowEx
 0x6959d4 GetMenu
 0x6959d8 SendMessageW
 0x6959dc MonitorFromRect
WINMM.dll
 0x695a18 waveOutGetNumDevs
 0x695a1c mixerSetControlDetails
 0x695a20 mixerGetLineInfoW
 0x695a24 waveOutPrepareHeader
 0x695a28 waveInClose
 0x695a2c waveInGetDevCapsW
 0x695a30 mixerGetLineControlsW
 0x695a34 waveOutClose
 0x695a38 waveInStop
 0x695a3c waveInPrepareHeader
 0x695a40 waveOutPause
 0x695a44 waveOutOpen
 0x695a48 waveInUnprepareHeader
 0x695a4c waveInOpen
 0x695a50 mixerGetID
 0x695a54 waveOutWrite
 0x695a58 waveOutUnprepareHeader
 0x695a5c waveOutGetPosition
 0x695a60 waveInGetNumDevs
 0x695a64 waveOutReset
 0x695a68 waveInReset
 0x695a6c mixerGetControlDetailsW
 0x695a70 waveInStart
 0x695a74 waveInAddBuffer
 0x695a78 waveInMessage
WS2_32.dll
 0x695a88 ioctlsocket
 0x695a8c WSAGetLastError
 0x695a90 accept
 0x695a94 gethostname
 0x695a98 htons
 0x695a9c closesocket
 0x695aa0 gethostbyaddr
 0x695aa4 WSAStartup
 0x695aa8 WSAEventSelect
 0x695aac socket
 0x695ab0 ntohs
 0x695ab4 ind
 0x695ab8 listen
 0x695abc gethostbyname
 0x695ac0 connect
 0x695ac4 inet_addr
 0x695ac8 recv
 0x695acc send
 0x695ad0 __WSAFDIsSet
 0x695ad4 select
 0x695ad8 sendto
 0x695adc setsockopt
RPCRT4.dll
 0x695648 UuidToStringW
 0x69564c UuidCreate
 0x695650 RpcStringFreeW
 0x695654 UuidFromStringW
NETAPI32.dll
 0x695568 NetApiBufferFree
 0x69556c NetUserGetInfo
gdiplus.dll
 0x695af0 GdipGetPathTypes
 0x695af4 GdipTransformPath
 0x695af8 GdipImageGetFrameCount
 0x695afc GdipResetClip
 0x695b00 GdipCreateBitmapFromStream
 0x695b04 GdipSetPathFillMode
 0x695b08 GdipGetPropertyItem
 0x695b0c GdipCloneImage
 0x695b10 GdipSetPathGradientCenterColor
 0x695b14 GdipSetPageUnit
 0x695b18 GdipSetPathGradientPresetBlend
 0x695b1c GdipCreateBitmapFromHBITMAP
 0x695b20 GdipSetPenDashStyle
 0x695b24 GdipGetRegionBounds
 0x695b28 GdipDeletePathIter
 0x695b2c GdipDrawImageRect
 0x695b30 GdipCreateMatrix
 0x695b34 GdipSetStringFormatHotkeyPrefix
 0x695b38 GdipGetTextRenderingHint
 0x695b3c GdipCreateStringFormat
 0x695b40 GdipDrawPath
 0x695b44 GdipSetPathGradientWrapMode
 0x695b48 GdipFillPath
 0x695b4c GdipSetStringFormatTrimming
 0x695b50 GdipGetClip
 0x695b54 GdipGetPathLastPoint
 0x695b58 GdipGetCellAscent
 0x695b5c GdipCreatePathIter
 0x695b60 GdipSetPathGradientCenterPoint
 0x695b64 GdipRotateMatrix
 0x695b68 GdipSetInterpolationMode
 0x695b6c GdipAddPathArc
 0x695b70 GdipCreateBitmapFromScan0
 0x695b74 GdipTranslateMatrix
 0x695b78 GdipCreateFontFromLogfontA
 0x695b7c GdipDisposeImageAttributes
 0x695b80 GdipDeleteStringFormat
 0x695b84 GdipMeasureString
 0x695b88 GdipSetPathGradientTransform
 0x695b8c GdipSetPenStartCap
 0x695b90 GdipCreateImageAttributes
 0x695b94 GdipIsOutlineVisiblePathPoint
 0x695b98 GdipGetImageEncodersSize
 0x695b9c GdipSetPenDashArray
 0x695ba0 GdipCreateTexture
 0x695ba4 GdipStringFormatGetGenericTypographic
 0x695ba8 GdipGetPathPoints
 0x695bac GdipGetCellDescent
 0x695bb0 GdipSetPenLineJoin
 0x695bb4 GdipSetStringFormatLineAlign
 0x695bb8 GdipSetLineWrapMode
 0x695bbc GdipDeletePath
 0x695bc0 GdipAddPathLine2
 0x695bc4 GdipSetLinePresetBlend
 0x695bc8 GdipMeasureCharacterRanges
 0x695bcc GdipSetStringFormatMeasurableCharacterRanges
 0x695bd0 GdipGetFontStyle
 0x695bd4 GdipCreatePathGradientFromPath
 0x695bd8 GdipGetFamily
 0x695bdc GdipGetImageEncoders
 0x695be0 GdipCloneStringFormat
 0x695be4 GdipGetImageGraphicsContext
 0x695be8 GdipSetLineTransform
 0x695bec GdipSetPathGradientSurroundColorsWithCount
 0x695bf0 GdiplusShutdown
 0x695bf4 GdipBitmapSetResolution
 0x695bf8 GdipGetWorldTransform
 0x695bfc GdipSetCompositingMode
 0x695c00 GdipPathIterNextSubpathPath
 0x695c04 GdipAddPathStringI
 0x695c08 GdipSetImageAttributesWrapMode
 0x695c0c GdipTranslateWorldTransform
 0x695c10 GdipCreateFontFromDC
 0x695c14 GdipSetStringFormatFlags
 0x695c18 GdipCreateLineBrush
 0x695c1c GdipAddPathString
 0x695c20 GdipWidenPath
 0x695c24 GdipSetPenEndCap
 0x695c28 GdipFlattenPath
 0x695c2c GdipGetStringFormatFlags
 0x695c30 GdipGetFontSize
 0x695c34 GdipSetImageAttributesColorMatrix
 0x695c38 GdipSetStringFormatAlign
 0x695c3c GdiplusStartup
 0x695c40 GdipScaleWorldTransform
 0x695c44 GdipSetPenMiterLimit
 0x695c48 GdipGetMatrixElements
 0x695c4c GdipRotateTextureTransform
 0x695c50 GdipDrawImageRectRectI
 0x695c54 GdipRotateWorldTransform
 0x695c58 GdipDrawImageRectRect
 0x695c5c GdipCreateRegion
 0x695c60 GdipGetEmHeight
 0x695c64 GdipSetPenDashCap197819
 0x695c68 GdipCombineRegionPath
 0x695c6c GdipCreateBitmapFromHICON
 0x695c70 GdipCreateFromHDC
 0x695c74 GdipResetWorldTransform
 0x695c78 GdipClosePathFigure
 0x695c7c GdipDeleteGraphics
 0x695c80 GdipCreateSolidFill
 0x695c84 GdipSetSmoothingMode
 0x695c88 GdipBitmapUnlockBits
 0x695c8c GdipGetPathWorldBounds
 0x695c90 GdipAddPathBeziers
 0x695c94 GdipGetDC
 0x695c98 GdipGetPropertyIdList
 0x695c9c GdipGetSolidFillColor
 0x695ca0 GdipStartPathFigure
 0x695ca4 GdipFillRectangle
 0x695ca8 GdipImageSelectActiveFrame
 0x695cac GdipSetPenDashOffset
 0x695cb0 GdipDrawLines
 0x695cb4 GdipDeleteFont
 0x695cb8 GdipBitmapLockBits
 0x695cbc GdipDeleteFontFamily
 0x695cc0 GdipCreatePen2
 0x695cc4 GdipDrawString
 0x695cc8 GdipGraphicsClear
 0x695ccc GdipGetPropertyItemSize
 0x695cd0 GdipAddPathRectangle
 0x695cd4 GdipCreateFont
 0x695cd8 GdipCreatePen1
 0x695cdc GdipGetImageHorizontalResolution
 0x695ce0 GdipSetWorldTransform
 0x695ce4 GdipAddPathBezier
 0x695ce8 GdipImageGetFrameDimensionsList
 0x695cec GdipAddPathLine
 0x695cf0 GdipGetImagePixelFormat
 0x695cf4 GdipCloneBrush
 0x695cf8 GdipSetPixelOffsetMode
 0x695cfc GdipAddPathEllipse
 0x695d00 GdipDrawEllipse
 0x695d04 GdipResetPath
 0x695d08 GdipReleaseDC
 0x695d0c GdipGetImageWidth
 0x695d10 GdipCreatePath
 0x695d14 GdipDisposeImage
 0x695d18 GdipDeleteMatrix
 0x695d1c GdipDrawRectangle
 0x695d20 GdipSetTextRenderingHint
 0x695d24 GdipCreateMatrix2
 0x695d28 GdipAddPathPath
 0x695d2c GdipCreateHatchBrush
 0x695d30 GdipImageGetFrameDimensionsCount
 0x695d34 GdipGetPropertyCount
 0x695d38 GdipFillEllipse
 0x695d3c GdipMultiplyWorldTransform
 0x695d40 GdipDrawLine
 0x695d44 GdipDeletePen
 0x695d48 GdipGetImageHeight
 0x695d4c GdipSetClipRegion
 0x695d50 GdipGetPointCount
 0x695d54 GdipGetGenericFontFamilySansSerif
 0x695d58 GdipSaveImageToStream
 0x695d5c GdipGetImageVerticalResolution
 0x695d60 GdipDeleteBrush
 0x695d64 GdipClonePath
 0x695d68 GdipCreateRegionRect
 0x695d6c GdipCreateFontFamilyFromName
 0x695d70 GdipDeleteRegion
 0x695d74 GdipGetPathGradientPointCount
 0x695d78 GdipSetSolidFillColor
USP10.dll
 0x6959e4 ScriptIsComplex
 0x6959e8 ScriptPlace
 0x6959ec ScriptItemize
 0x6959f0 ScriptApplyDigitSubstitution
 0x6959f4 ScriptLayout
 0x6959f8 ScriptRecordDigitSubstitution
 0x6959fc ScriptShape
MSIMG32.dll
 0x69555c GradientFill
 0x695560 AlphaBlend
iphlpapi.dll
 0x695d80 GetNetworkParams
 0x695d84 GetAdaptersAddresses
 0x695d88 GetIpAddrTable
WININET.dll
 0x695a04 InternetQueryOptionA
 0x695a08 InternetAutodial
 0x695a0c InternetGetConnectedState
 0x695a10 InternetAutodialHangup
urlmon.dll
 0x695de0 CreateFormatEnumerator
 0x695de4 CopyStgMedium
DNSAPI.dll
 0x6950f4 DnsRecordListFree
 0x6950f8 DnsQuery_W
Secur32.dll
 0x6956c4 EncryptMessage
 0x6956c8 AcquireCredentialsHandleW
 0x6956cc InitializeSecurityContextW
 0x6956d0 DeleteSecurityContext
 0x6956d4 FreeContextBuffer
 0x6956d8 FreeCredentialsHandle
 0x6956dc QueryContextAttributesW
 0x6956e0 DecryptMessage
 0x6956e4 ApplyControlToken
CRYPT32.dll
 0x6950dc CertFindCertificateInStore
 0x6950e0 CertCloseStore
 0x6950e4 CryptQueryObject
 0x6950e8 CertFreeCertificateContext
 0x6950ec CertVerifySubjectCertificateContext
WINTRUST.dll
 0x695a80 WinVerifyTrust

EAT(Export Address Table) is none



Similarity measure (PE file only) - Checking for service failure