Report - SEWanClt.exe

Malicious Library UPX Anti_VM PE File PE32 MZP Format OS Processor Check
ScreenShot
Created 2024.11.13 14:05 Machine s1_win7_x6403
Filename SEWanClt.exe
Type PE32 executable (GUI) Intel 80386, for MS Windows
AI Score
5
Behavior Score
4.0
ZERO API file : clean
VT API (file) 52 detected (AIDetectMalware, Malicious, score, Zusy, Unsafe, confidence, Attribute, HighConfidence, high confidence, Delf, AGen, TrojanX, kqznli, sI1bKygJT5U, DelfAGen, R002C0DKB24, Detected, Malware@#o0l3u4341yhc, R673416, Artemis, BScope, Click, Genetic, Gencirc, HVM37, susgen)
md5 952d79680f0faa1ffcbd5fab648e066f
sha256 90238d6799041a37cbda12e4ce57e8b3b75d730bffbf5cd6340890050a52783d
ssdeep 24576:rKFoVNhRl2SlnYSpyzljGXXlgbq3A8vWi/9T9E1xZ4rmNBylmb:5NcgRynbKRv5TA6rmNqmb
imphash de11a7ecdaf9b3b7ae48c83cec7bbad3
impfuzzy 192:t3VNF9i9xE1SZ4AFceuuzNrSUvK9X2ovqyquAu/7YebOQteZ9pha7:t3VEW1SZ7ZA9VJApebOQoZ98
  Network IP location

Signature (10cnts)

Level Description
danger File has been identified by 52 AntiVirus engines on VirusTotal as malicious
notice Allocates read-write-execute memory (usually to unpack itself)
notice Changes read-write memory protection to read-execute (probably to avoid detection when setting all RWX flags at the same time)
notice Foreign language identified in PE resource
notice Queries the disk size which could be used to detect virtual machine with small fixed size or dynamic allocation
notice The binary likely contains encrypted or compressed data indicative of a packer
info Checks amount of memory in system
info One or more processes crashed
info The executable contains unknown PE section names indicative of a packer (could be a false positive)
info The file contains an unknown PE resource name possibly indicative of a packer

Rules (7cnts)

Level Name Description Collection
watch Malicious_Library_Zero Malicious_Library binaries (upload)
watch UPX_Zero UPX packed file binaries (upload)
notice anti_vm_detect Possibly employs anti-virtualization techniques binaries (upload)
info IsPE32 (no description) binaries (upload)
info mzp_file_format MZP(Delphi) file format binaries (upload)
info OS_Processor_Check_Zero OS Processor Check binaries (upload)
info PE_Header_Zero PE File Signature binaries (upload)

Network (3cnts) ?

Request CC ASN Co IP4 Rule ? ZERO ?
ip1.ahjoe.com CN CHINA UNICOM China169 Backbone 122.114.58.52 clean
ip2.ahjoe.com CN CHINANET SiChuan Telecom Internet Data Center 211.149.164.85 clean
ip3.ahjoe.com CN West263 International Limited 103.139.1.35 clean

Suricata ids

PE API

IAT(Import Address Table) Library

kernel32.dll
 0x53b1f4 DeleteCriticalSection
 0x53b1f8 LeaveCriticalSection
 0x53b1fc EnterCriticalSection
 0x53b200 InitializeCriticalSection
 0x53b204 VirtualFree
 0x53b208 VirtualAlloc
 0x53b20c LocalFree
 0x53b210 LocalAlloc
 0x53b214 GetCurrentThreadId
 0x53b218 InterlockedDecrement
 0x53b21c InterlockedIncrement
 0x53b220 VirtualQuery
 0x53b224 WideCharToMultiByte
 0x53b228 MultiByteToWideChar
 0x53b22c lstrlenA
 0x53b230 lstrcpynA
 0x53b234 LoadLibraryExA
 0x53b238 GetThreadLocale
 0x53b23c GetStartupInfoA
 0x53b240 GetProcAddress
 0x53b244 GetModuleHandleA
 0x53b248 GetModuleFileNameA
 0x53b24c GetLocaleInfoA
 0x53b250 GetLastError
 0x53b254 GetCommandLineA
 0x53b258 FreeLibrary
 0x53b25c FindFirstFileA
 0x53b260 FindClose
 0x53b264 ExitProcess
 0x53b268 ExitThread
 0x53b26c CreateThread
 0x53b270 WriteFile
 0x53b274 UnhandledExceptionFilter
 0x53b278 SetFilePointer
 0x53b27c SetEndOfFile
 0x53b280 RtlUnwind
 0x53b284 ReadFile
 0x53b288 RaiseException
 0x53b28c GetStdHandle
 0x53b290 GetFileSize
 0x53b294 GetSystemTime
 0x53b298 GetFileType
 0x53b29c CreateFileA
 0x53b2a0 CloseHandle
user32.dll
 0x53b2a8 GetKeyboardType
 0x53b2ac LoadStringA
 0x53b2b0 MessageBoxA
 0x53b2b4 CharNextA
advapi32.dll
 0x53b2bc RegQueryValueExA
 0x53b2c0 RegOpenKeyExA
 0x53b2c4 RegCloseKey
oleaut32.dll
 0x53b2cc SysFreeString
 0x53b2d0 SysReAllocStringLen
 0x53b2d4 SysAllocStringLen
kernel32.dll
 0x53b2dc TlsSetValue
 0x53b2e0 TlsGetValue
 0x53b2e4 LocalAlloc
 0x53b2e8 GetModuleHandleA
advapi32.dll
 0x53b2f0 RegSetValueExA
 0x53b2f4 RegQueryValueExA
 0x53b2f8 RegQueryInfoKeyA
 0x53b2fc RegOpenKeyExA
 0x53b300 RegFlushKey
 0x53b304 RegEnumValueA
 0x53b308 RegDeleteValueA
 0x53b30c RegCreateKeyExA
 0x53b310 RegCreateKeyA
 0x53b314 RegCloseKey
 0x53b318 OpenProcessToken
 0x53b31c LookupPrivilegeValueA
 0x53b320 ImpersonateSelf
 0x53b324 GetTokenInformation
 0x53b328 AdjustTokenPrivileges
kernel32.dll
 0x53b330 lstrcpyA
 0x53b334 lstrcmpiA
 0x53b338 WriteFile
 0x53b33c WinExec
 0x53b340 WideCharToMultiByte
 0x53b344 WaitForSingleObject
 0x53b348 WaitForMultipleObjects
 0x53b34c VirtualQuery
 0x53b350 VirtualProtect
 0x53b354 VirtualFree
 0x53b358 VirtualAlloc
 0x53b35c UnmapViewOfFile
 0x53b360 TerminateThread
 0x53b364 TerminateProcess
 0x53b368 Sleep
 0x53b36c SizeofResource
 0x53b370 SetThreadPriority
 0x53b374 SetThreadLocale
 0x53b378 SetProcessWorkingSetSize
 0x53b37c SetLocalTime
 0x53b380 SetFileTime
 0x53b384 SetFilePointer
 0x53b388 SetFileAttributesW
 0x53b38c SetFileAttributesA
 0x53b390 SetEvent
 0x53b394 SetErrorMode
 0x53b398 SetEnvironmentVariableA
 0x53b39c SetEndOfFile
 0x53b3a0 ResumeThread
 0x53b3a4 ResetEvent
 0x53b3a8 RemoveDirectoryA
 0x53b3ac ReadFile
 0x53b3b0 PulseEvent
 0x53b3b4 OpenProcess
 0x53b3b8 OpenFileMappingA
 0x53b3bc MultiByteToWideChar
 0x53b3c0 MulDiv
 0x53b3c4 MoveFileExA
 0x53b3c8 MoveFileA
 0x53b3cc MapViewOfFile
 0x53b3d0 LockResource
 0x53b3d4 LocalFileTimeToFileTime
 0x53b3d8 LoadResource
 0x53b3dc LoadLibraryA
 0x53b3e0 LeaveCriticalSection
 0x53b3e4 InitializeCriticalSection
 0x53b3e8 GlobalUnlock
 0x53b3ec GlobalSize
 0x53b3f0 GlobalReAlloc
 0x53b3f4 GlobalHandle
 0x53b3f8 GlobalLock
 0x53b3fc GlobalFree
 0x53b400 GlobalFindAtomA
 0x53b404 GlobalDeleteAtom
 0x53b408 GlobalAlloc
 0x53b40c GlobalAddAtomA
 0x53b410 GetWindowsDirectoryA
 0x53b414 GetVersionExA
 0x53b418 GetVersion
 0x53b41c GetUserDefaultLCID
 0x53b420 GetTimeZoneInformation
 0x53b424 GetTickCount
 0x53b428 GetThreadLocale
 0x53b42c GetTempPathA
 0x53b430 GetSystemInfo
 0x53b434 GetSystemDirectoryA
 0x53b438 GetStringTypeExA
 0x53b43c GetStdHandle
 0x53b440 GetProcAddress
 0x53b444 GetOEMCP
 0x53b448 GetModuleHandleA
 0x53b44c GetModuleFileNameA
 0x53b450 GetLocaleInfoA
 0x53b454 GetLocalTime
 0x53b458 GetLastError
 0x53b45c GetFileSize
 0x53b460 GetFileAttributesW
 0x53b464 GetFileAttributesA
 0x53b468 GetExitCodeThread
 0x53b46c GetExitCodeProcess
 0x53b470 GetEnvironmentVariableA
 0x53b474 GetDriveTypeA
 0x53b478 GetDiskFreeSpaceA
 0x53b47c GetDateFormatA
 0x53b480 GetCurrentThreadId
 0x53b484 GetCurrentProcessId
 0x53b488 GetCurrentProcess
 0x53b48c GetCurrentDirectoryW
 0x53b490 GetComputerNameA
 0x53b494 GetCPInfo
 0x53b498 GetACP
 0x53b49c FreeResource
 0x53b4a0 InterlockedIncrement
 0x53b4a4 InterlockedExchange
 0x53b4a8 InterlockedDecrement
 0x53b4ac FreeLibrary
 0x53b4b0 FormatMessageA
 0x53b4b4 FindResourceA
 0x53b4b8 FindNextFileA
 0x53b4bc FindFirstFileA
 0x53b4c0 FindClose
 0x53b4c4 FileTimeToLocalFileTime
 0x53b4c8 FileTimeToDosDateTime
 0x53b4cc ExpandEnvironmentStringsA
 0x53b4d0 EnumCalendarInfoA
 0x53b4d4 EnterCriticalSection
 0x53b4d8 DuplicateHandle
 0x53b4dc DosDateTimeToFileTime
 0x53b4e0 DeviceIoControl
 0x53b4e4 DeleteFileW
 0x53b4e8 DeleteFileA
 0x53b4ec DeleteCriticalSection
 0x53b4f0 CreateThread
 0x53b4f4 CreateSemaphoreA
 0x53b4f8 CreateProcessA
 0x53b4fc CreatePipe
 0x53b500 CreateFileW
 0x53b504 CreateFileA
 0x53b508 CreateEventA
 0x53b50c CreateDirectoryW
 0x53b510 CreateDirectoryA
 0x53b514 CopyFileA
 0x53b518 CompareStringW
 0x53b51c CompareStringA
 0x53b520 CloseHandle
gdi32.dll
 0x53b528 UnrealizeObject
 0x53b52c StretchBlt
 0x53b530 SetWindowOrgEx
 0x53b534 SetWinMetaFileBits
 0x53b538 SetViewportOrgEx
 0x53b53c SetTextColor
 0x53b540 SetStretchBltMode
 0x53b544 SetROP2
 0x53b548 SetPixel
 0x53b54c SetMapMode
 0x53b550 SetEnhMetaFileBits
 0x53b554 SetDIBColorTable
 0x53b558 SetBrushOrgEx
 0x53b55c SetBkMode
 0x53b560 SetBkColor
 0x53b564 SelectPalette
 0x53b568 SelectObject
 0x53b56c SaveDC
 0x53b570 RestoreDC
 0x53b574 Rectangle
 0x53b578 RectVisible
 0x53b57c RealizePalette
 0x53b580 Polyline
 0x53b584 PlayEnhMetaFile
 0x53b588 PatBlt
 0x53b58c MoveToEx
 0x53b590 MaskBlt
 0x53b594 LineTo
 0x53b598 LPtoDP
 0x53b59c IntersectClipRect
 0x53b5a0 GetWindowOrgEx
 0x53b5a4 GetWinMetaFileBits
 0x53b5a8 GetTextMetricsA
 0x53b5ac GetTextExtentPointA
 0x53b5b0 GetTextExtentPoint32A
 0x53b5b4 GetSystemPaletteEntries
 0x53b5b8 GetStockObject
 0x53b5bc GetPixel
 0x53b5c0 GetPaletteEntries
 0x53b5c4 GetObjectType
 0x53b5c8 GetObjectA
 0x53b5cc GetEnhMetaFilePaletteEntries
 0x53b5d0 GetEnhMetaFileHeader
 0x53b5d4 GetEnhMetaFileDescriptionA
 0x53b5d8 GetEnhMetaFileBits
 0x53b5dc GetDeviceCaps
 0x53b5e0 GetDIBits
 0x53b5e4 GetDIBColorTable
 0x53b5e8 GetDCOrgEx
 0x53b5ec GetCurrentPositionEx
 0x53b5f0 GetClipBox
 0x53b5f4 GetBrushOrgEx
 0x53b5f8 GetBitmapBits
 0x53b5fc GdiFlush
 0x53b600 ExtTextOutA
 0x53b604 ExtEscape
 0x53b608 ExcludeClipRect
 0x53b60c DeleteObject
 0x53b610 DeleteEnhMetaFile
 0x53b614 DeleteDC
 0x53b618 CreateSolidBrush
 0x53b61c CreatePenIndirect
 0x53b620 CreatePalette
 0x53b624 CreateHalftonePalette
 0x53b628 CreateFontIndirectA
 0x53b62c CreateEnhMetaFileA
 0x53b630 CreateDIBitmap
 0x53b634 CreateDIBSection
 0x53b638 CreateDCA
 0x53b63c CreateCompatibleDC
 0x53b640 CreateCompatibleBitmap
 0x53b644 CreateBrushIndirect
 0x53b648 CreateBitmap
 0x53b64c CopyEnhMetaFileA
 0x53b650 CloseEnhMetaFile
 0x53b654 BitBlt
user32.dll
 0x53b65c mouse_event
 0x53b660 keybd_event
 0x53b664 WindowFromPoint
 0x53b668 WinHelpA
 0x53b66c WaitMessage
 0x53b670 UpdateWindow
 0x53b674 UnregisterClassA
 0x53b678 UnionRect
 0x53b67c UnhookWindowsHookEx
 0x53b680 TranslateMessage
 0x53b684 TranslateMDISysAccel
 0x53b688 TrackPopupMenu
 0x53b68c SystemParametersInfoA
 0x53b690 ShowWindowAsync
 0x53b694 ShowWindow
 0x53b698 ShowScrollBar
 0x53b69c ShowOwnedPopups
 0x53b6a0 ShowCursor
 0x53b6a4 SetWindowsHookExA
 0x53b6a8 SetWindowTextA
 0x53b6ac SetWindowPos
 0x53b6b0 SetWindowPlacement
 0x53b6b4 SetWindowLongA
 0x53b6b8 SetTimer
 0x53b6bc SetThreadDesktop
 0x53b6c0 SetScrollRange
 0x53b6c4 SetScrollPos
 0x53b6c8 SetScrollInfo
 0x53b6cc SetRect
 0x53b6d0 SetPropA
 0x53b6d4 SetMenuItemInfoA
 0x53b6d8 SetMenu
 0x53b6dc SetForegroundWindow
 0x53b6e0 SetFocus
 0x53b6e4 SetCursorPos
 0x53b6e8 SetCursor
 0x53b6ec SetClipboardData
 0x53b6f0 SetClassLongA
 0x53b6f4 SetCapture
 0x53b6f8 SetActiveWindow
 0x53b6fc SendMessageA
 0x53b700 SendInput
 0x53b704 ScrollWindow
 0x53b708 ScreenToClient
 0x53b70c RemovePropA
 0x53b710 RemoveMenu
 0x53b714 ReleaseDC
 0x53b718 ReleaseCapture
 0x53b71c RegisterWindowMessageA
 0x53b720 RegisterClipboardFormatA
 0x53b724 RegisterClassA
 0x53b728 RedrawWindow
 0x53b72c PtInRect
 0x53b730 PostQuitMessage
 0x53b734 PostMessageA
 0x53b738 PeekMessageA
 0x53b73c OpenInputDesktop
 0x53b740 OpenClipboard
 0x53b744 OffsetRect
 0x53b748 OemToCharA
 0x53b74c MsgWaitForMultipleObjects
 0x53b750 MessageBoxA
 0x53b754 MessageBeep
 0x53b758 MapWindowPoints
 0x53b75c MapVirtualKeyA
 0x53b760 LoadStringA
 0x53b764 LoadKeyboardLayoutA
 0x53b768 LoadIconA
 0x53b76c LoadCursorA
 0x53b770 LoadBitmapA
 0x53b774 KillTimer
 0x53b778 IsZoomed
 0x53b77c IsWindowVisible
 0x53b780 IsWindowEnabled
 0x53b784 IsWindow
 0x53b788 IsRectEmpty
 0x53b78c IsIconic
 0x53b790 IsDialogMessageA
 0x53b794 IsClipboardFormatAvailable
 0x53b798 IsChild
 0x53b79c InvalidateRect
 0x53b7a0 IntersectRect
 0x53b7a4 InsertMenuItemA
 0x53b7a8 InsertMenuA
 0x53b7ac InflateRect
 0x53b7b0 GetWindowThreadProcessId
 0x53b7b4 GetWindowTextA
 0x53b7b8 GetWindowRect
 0x53b7bc GetWindowPlacement
 0x53b7c0 GetWindowLongA
 0x53b7c4 GetWindowDC
 0x53b7c8 GetTopWindow
 0x53b7cc GetThreadDesktop
 0x53b7d0 GetSystemMetrics
 0x53b7d4 GetSystemMenu
 0x53b7d8 GetSysColor
 0x53b7dc GetSubMenu
 0x53b7e0 GetScrollRange
 0x53b7e4 GetScrollPos
 0x53b7e8 GetScrollInfo
 0x53b7ec GetPropA
 0x53b7f0 GetParent
 0x53b7f4 GetWindow
 0x53b7f8 GetMessageTime
 0x53b7fc GetMessageExtraInfo
 0x53b800 GetMenuStringA
 0x53b804 GetMenuState
 0x53b808 GetMenuItemInfoA
 0x53b80c GetMenuItemID
 0x53b810 GetMenuItemCount
 0x53b814 GetMenu
 0x53b818 GetLastInputInfo
 0x53b81c GetLastActivePopup
 0x53b820 GetKeyboardState
 0x53b824 GetKeyboardLayoutList
 0x53b828 GetKeyboardLayout
 0x53b82c GetKeyState
 0x53b830 GetKeyNameTextA
 0x53b834 GetIconInfo
 0x53b838 GetForegroundWindow
 0x53b83c GetFocus
 0x53b840 GetDlgItem
 0x53b844 GetDesktopWindow
 0x53b848 GetDCEx
 0x53b84c GetDC
 0x53b850 GetCursorPos
 0x53b854 GetCursorInfo
 0x53b858 GetCursor
 0x53b85c GetClipboardOwner
 0x53b860 GetClipboardSequenceNumber
 0x53b864 GetClipboardData
 0x53b868 GetClientRect
 0x53b86c GetClassNameA
 0x53b870 GetClassInfoA
 0x53b874 GetCapture
 0x53b878 GetActiveWindow
 0x53b87c FrameRect
 0x53b880 FindWindowA
 0x53b884 FillRect
 0x53b888 ExitWindowsEx
 0x53b88c EqualRect
 0x53b890 EnumWindows
 0x53b894 EnumThreadWindows
 0x53b898 EnumDisplayDevicesA
 0x53b89c EnumDisplaySettingsA
 0x53b8a0 EnumClipboardFormats
 0x53b8a4 EndPaint
 0x53b8a8 EnableWindow
 0x53b8ac EnableScrollBar
 0x53b8b0 EnableMenuItem
 0x53b8b4 EmptyClipboard
 0x53b8b8 DrawTextA
 0x53b8bc DrawMenuBar
 0x53b8c0 DrawIconEx
 0x53b8c4 DrawIcon
 0x53b8c8 DrawFrameControl
 0x53b8cc DrawFocusRect
 0x53b8d0 DrawEdge
 0x53b8d4 DispatchMessageA
 0x53b8d8 DestroyWindow
 0x53b8dc DestroyMenu
 0x53b8e0 DestroyIcon
 0x53b8e4 DestroyCursor
 0x53b8e8 DeleteMenu
 0x53b8ec DefWindowProcA
 0x53b8f0 DefMDIChildProcA
 0x53b8f4 DefFrameProcA
 0x53b8f8 CreateWindowExA
 0x53b8fc CreatePopupMenu
 0x53b900 CreateMenu
 0x53b904 CreateIcon
 0x53b908 CloseDesktop
 0x53b90c CloseClipboard
 0x53b910 ClientToScreen
 0x53b914 CheckMenuItem
 0x53b918 ChangeDisplaySettingsExA
 0x53b91c ChangeDisplaySettingsA
 0x53b920 CallWindowProcA
 0x53b924 CallNextHookEx
 0x53b928 BeginPaint
 0x53b92c CharNextA
 0x53b930 CharLowerBuffA
 0x53b934 CharLowerA
 0x53b938 CharUpperBuffA
 0x53b93c AdjustWindowRectEx
 0x53b940 ActivateKeyboardLayout
kernel32.dll
 0x53b948 Sleep
oleaut32.dll
 0x53b950 SafeArrayPtrOfIndex
 0x53b954 SafeArrayPutElement
 0x53b958 SafeArrayGetElement
 0x53b95c SafeArrayGetUBound
 0x53b960 SafeArrayGetLBound
 0x53b964 SafeArrayRedim
 0x53b968 SafeArrayCreate
 0x53b96c VariantChangeTypeEx
 0x53b970 VariantCopyInd
 0x53b974 VariantCopy
 0x53b978 VariantClear
 0x53b97c VariantInit
ole32.dll
 0x53b984 CreateStreamOnHGlobal
 0x53b988 IsAccelerator
 0x53b98c OleDraw
 0x53b990 OleSetMenuDescriptor
 0x53b994 OleUninitialize
 0x53b998 OleInitialize
 0x53b99c CoTaskMemFree
 0x53b9a0 ProgIDFromCLSID
 0x53b9a4 StringFromCLSID
 0x53b9a8 CoCreateInstance
 0x53b9ac CoGetClassObject
 0x53b9b0 CoUninitialize
 0x53b9b4 CoInitialize
 0x53b9b8 IsEqualGUID
oleaut32.dll
 0x53b9c0 GetErrorInfo
 0x53b9c4 GetActiveObject
 0x53b9c8 SysFreeString
comctl32.dll
 0x53b9d0 ImageList_SetIconSize
 0x53b9d4 ImageList_GetIconSize
 0x53b9d8 ImageList_Write
 0x53b9dc ImageList_Read
 0x53b9e0 ImageList_GetDragImage
 0x53b9e4 ImageList_DragShowNolock
 0x53b9e8 ImageList_SetDragCursorImage
 0x53b9ec ImageList_DragMove
 0x53b9f0 ImageList_DragLeave
 0x53b9f4 ImageList_DragEnter
 0x53b9f8 ImageList_EndDrag
 0x53b9fc ImageList_BeginDrag
 0x53ba00 ImageList_Remove
 0x53ba04 ImageList_DrawEx
 0x53ba08 ImageList_Draw
 0x53ba0c ImageList_GetBkColor
 0x53ba10 ImageList_SetBkColor
 0x53ba14 ImageList_ReplaceIcon
 0x53ba18 ImageList_Add
 0x53ba1c ImageList_GetImageCount
 0x53ba20 ImageList_Destroy
 0x53ba24 ImageList_Create
shell32.dll
 0x53ba2c Shell_NotifyIconA
 0x53ba30 ShellExecuteExA
 0x53ba34 ShellExecuteA
 0x53ba38 DragQueryFileA
shell32.dll
 0x53ba40 SHGetSpecialFolderPathA
 0x53ba44 SHGetPathFromIDListW
 0x53ba48 SHGetMalloc
 0x53ba4c SHGetDesktopFolder
 0x53ba50 SHBrowseForFolderA
comdlg32.dll
 0x53ba58 GetSaveFileNameA
 0x53ba5c GetOpenFileNameA
wsock32.dll
 0x53ba64 WSACleanup
 0x53ba68 WSAStartup
 0x53ba6c WSAGetLastError
 0x53ba70 WSACancelAsyncRequest
 0x53ba74 WSAAsyncGetHostByName
 0x53ba78 WSAAsyncSelect
 0x53ba7c socket
 0x53ba80 setsockopt
 0x53ba84 send
 0x53ba88 select
 0x53ba8c recv
 0x53ba90 listen
 0x53ba94 ioctlsocket
 0x53ba98 htons
 0x53ba9c getsockopt
 0x53baa0 getsockname
 0x53baa4 getpeername
 0x53baa8 connect
 0x53baac closesocket
 0x53bab0 ind
 0x53bab4 accept
winmm.dll
 0x53babc waveInUnprepareHeader
 0x53bac0 waveInStop
 0x53bac4 waveInStart
 0x53bac8 waveInReset
 0x53bacc waveInPrepareHeader
 0x53bad0 waveInOpen
 0x53bad4 waveInGetNumDevs
 0x53bad8 waveInGetDevCapsW
 0x53badc waveInClose
 0x53bae0 waveInAddBuffer
 0x53bae4 timeSetEvent
 0x53bae8 timeKillEvent
 0x53baec timeGetTime
Ntdll.dll
 0x53baf4 RtlIpv6AddressToStringA
 0x53baf8 RtlIpv4AddressToStringA
 0x53bafc RtlIpv6StringToAddressA
 0x53bb00 RtlIpv4StringToAddressA
USER32.DLL
 0x53bb08 SetLayeredWindowAttributes
d3d9.dll
 0x53bb10 Direct3DCreate9
kernel32.dll
 0x53bb18 GetSystemTimes
user32.dll
 0x53bb20 EnumDisplayMonitors
 0x53bb24 GetMonitorInfoA

EAT(Export Address Table) is none



Similarity measure (PE file only) - Checking for service failure