Report - ss.exe

Generic Malware Malicious Library Malicious Packer UPX PE File PE32 MZP Format
ScreenShot
Created 2025.02.25 02:41 Machine s1_win7_x6402
Filename ss.exe
Type PE32 executable (GUI) Intel 80386, for MS Windows
AI Score
5
Behavior Score
1.0
ZERO API file : clean
VT API (file)
md5 b310e7335eae66a533e985b377e81612
sha256 fc0629d450f8a57bc93e1ba1cdef0bff49c1a4cf0725c2a1f52116fd67d9fe8e
ssdeep 24576:jkbul+AAcfmIK0BHS7u8OcnKFImpXu2aGVC3B9mQJ+iKc9k0nfw69IDcYJe1LCyl:R+mbK0JSnepKGITmS869CsO0xTLbA58
imphash 66af09e6177c53ed790e0c3c461739d6
impfuzzy 192:FJTYiSrnTEKh+xXwMRFpH7tS9Nl2h83wy8sym1SmHcBkfUhnhut5nPQOD:zYiSrRkx5pH7tYyALypBpQzPQOD
  Network IP location

Signature (3cnts)

Level Description
notice Allocates read-write-execute memory (usually to unpack itself)
notice Checks for the Locally Unique Identifier on the system for a suspicious privilege
info The executable contains unknown PE section names indicative of a packer (could be a false positive)

Rules (7cnts)

Level Name Description Collection
warning Generic_Malware_Zero Generic Malware binaries (upload)
watch Malicious_Library_Zero Malicious_Library binaries (upload)
watch Malicious_Packer_Zero Malicious Packer binaries (upload)
watch UPX_Zero UPX packed file binaries (upload)
info IsPE32 (no description) binaries (upload)
info mzp_file_format MZP(Delphi) file format binaries (upload)
info PE_Header_Zero PE File Signature binaries (upload)

Network (0cnts) ?

Request CC ASN Co IP4 Rule ? ZERO ?

Suricata ids

PE API

IAT(Import Address Table) Library

ADVAPI32.DLL
 0x6161bc AdjustTokenPrivileges
 0x6161c0 LookupPrivilegeValueA
 0x6161c4 OpenProcessToken
 0x6161c8 RegCloseKey
 0x6161cc RegConnectRegistryW
 0x6161d0 RegCreateKeyExW
 0x6161d4 RegDeleteKeyW
 0x6161d8 RegDeleteValueW
 0x6161dc RegEnumKeyExW
 0x6161e0 RegEnumValueW
 0x6161e4 RegFlushKey
 0x6161e8 RegLoadKeyW
 0x6161ec RegOpenKeyExW
 0x6161f0 RegQueryInfoKeyW
 0x6161f4 RegQueryValueExW
 0x6161f8 RegReplaceKeyW
 0x6161fc RegRestoreKeyW
 0x616200 RegSaveKeyW
 0x616204 RegSetValueExW
 0x616208 RegUnLoadKeyW
KERNEL32.DLL
 0x616488 CloseHandle
 0x61648c CompareStringW
 0x616490 CreateEventW
 0x616494 CreateFileA
 0x616498 CreateFileW
 0x61649c CreateSemaphoreW
 0x6164a0 CreateThread
 0x6164a4 DeleteCriticalSection
 0x6164a8 DeleteFileA
 0x6164ac EnterCriticalSection
 0x6164b0 EnumCalendarInfoW
 0x6164b4 EnumSystemLocalesW
 0x6164b8 ExitProcess
 0x6164bc ExitThread
 0x6164c0 FileTimeToLocalFileTime
 0x6164c4 FileTimeToSystemTime
 0x6164c8 FindClose
 0x6164cc FindFirstFileExW
 0x6164d0 FindFirstFileW
 0x6164d4 FindNextFileW
 0x6164d8 FindResourceW
 0x6164dc FormatMessageA
 0x6164e0 FormatMessageW
 0x6164e4 FreeLibrary
 0x6164e8 FreeResource
 0x6164ec GetACP
 0x6164f0 GetCPInfo
 0x6164f4 GetCPInfoExW
 0x6164f8 GetCommandLineA
 0x6164fc GetCommandLineW
 0x616500 GetCompressedFileSizeW
 0x616504 GetCurrentProcess
 0x616508 GetCurrentProcessId
 0x61650c GetCurrentThread
 0x616510 GetCurrentThreadId
 0x616514 GetDateFormatA
 0x616518 GetDateFormatW
 0x61651c GetDiskFreeSpaceA
 0x616520 GetDiskFreeSpaceExA
 0x616524 GetDiskFreeSpaceW
 0x616528 GetDriveTypeA
 0x61652c GetEnvironmentStrings
 0x616530 GetExitCodeThread
 0x616534 GetFileAttributesA
 0x616538 GetFileAttributesW
 0x61653c GetFileSizeEx
 0x616540 GetFileTime
 0x616544 GetFileType
 0x616548 GetFullPathNameW
 0x61654c GetLastError
 0x616550 GetLocalTime
 0x616554 GetLocaleInfoA
 0x616558 GetLocaleInfoW
 0x61655c GetLogicalDriveStringsA
 0x616560 GetLogicalDrives
 0x616564 GetModuleFileNameA
 0x616568 GetModuleFileNameW
 0x61656c GetModuleHandleA
 0x616570 GetModuleHandleW
 0x616574 GetOEMCP
 0x616578 GetProcAddress
 0x61657c GetProcessHeap
 0x616580 GetStartupInfoA
 0x616584 GetStdHandle
 0x616588 GetStringTypeA
 0x61658c GetStringTypeW
 0x616590 GetSystemDefaultLangID
 0x616594 GetSystemDefaultUILanguage
 0x616598 GetSystemInfo
 0x61659c GetSystemTimeAsFileTime
 0x6165a0 GetThreadLocale
 0x6165a4 GetThreadPriority
 0x6165a8 GetTickCount
 0x6165ac GetTimeFormatA
 0x6165b0 GetTimeZoneInformation
 0x6165b4 GetUserDefaultLCID
 0x6165b8 GetUserDefaultUILanguage
 0x6165bc GetVersion
 0x6165c0 GetVersionExA
 0x6165c4 GetVersionExW
 0x6165c8 GetVolumeInformationA
 0x6165cc GlobalAddAtomW
 0x6165d0 GlobalAlloc
 0x6165d4 GlobalDeleteAtom
 0x6165d8 GlobalFindAtomW
 0x6165dc GlobalFree
 0x6165e0 GlobalLock
 0x6165e4 GlobalSize
 0x6165e8 GlobalUnlock
 0x6165ec HeapAlloc
 0x6165f0 HeapFree
 0x6165f4 InitializeCriticalSection
 0x6165f8 InterlockedCompareExchange
 0x6165fc InterlockedDecrement
 0x616600 InterlockedExchange
 0x616604 InterlockedExchangeAdd
 0x616608 InterlockedIncrement
 0x61660c IsDBCSLeadByteEx
 0x616610 IsDebuggerPresent
 0x616614 IsValidLocale
 0x616618 LCMapStringA
 0x61661c LeaveCriticalSection
 0x616620 LoadLibraryA
 0x616624 LoadLibraryExW
 0x616628 LoadLibraryW
 0x61662c LoadResource
 0x616630 LocalAlloc
 0x616634 LocalFree
 0x616638 LockResource
 0x61663c MulDiv
 0x616640 MultiByteToWideChar
 0x616644 OpenSemaphoreW
 0x616648 OutputDebugStringA
 0x61664c QueryPerformanceCounter
 0x616650 QueryPerformanceFrequency
 0x616654 RaiseException
 0x616658 ReadDirectoryChangesW
 0x61665c ReadFile
 0x616660 ReleaseSemaphore
 0x616664 ResetEvent
 0x616668 ResumeThread
 0x61666c RtlUnwind
 0x616670 SetConsoleCtrlHandler
 0x616674 SetEndOfFile
 0x616678 SetErrorMode
 0x61667c SetEvent
 0x616680 SetFilePointer
 0x616684 SetHandleCount
 0x616688 SetLastError
 0x61668c SetThreadLocale
 0x616690 SetThreadPriority
 0x616694 SizeofResource
 0x616698 Sleep
 0x61669c SuspendThread
 0x6166a0 SwitchToThread
 0x6166a4 TerminateThread
 0x6166a8 TlsAlloc
 0x6166ac TlsFree
 0x6166b0 TlsGetValue
 0x6166b4 TlsSetValue
 0x6166b8 TryEnterCriticalSection
 0x6166bc UnhandledExceptionFilter
 0x6166c0 VirtualAlloc
 0x6166c4 VirtualFree
 0x6166c8 VirtualProtect
 0x6166cc VirtualQuery
 0x6166d0 VirtualQueryEx
 0x6166d4 WaitForMultipleObjectsEx
 0x6166d8 WaitForSingleObject
 0x6166dc WideCharToMultiByte
 0x6166e0 WriteFile
 0x6166e4 lstrcatA
 0x6166e8 lstrcmpW
 0x6166ec lstrcmpiA
 0x6166f0 lstrcpyA
 0x6166f4 lstrcpynW
 0x6166f8 lstrlenW
VERSION.DLL
 0x61671c GetFileVersionInfoA
 0x616720 GetFileVersionInfoSizeA
 0x616724 GetFileVersionInfoSizeW
 0x616728 GetFileVersionInfoW
 0x61672c VerQueryValueA
 0x616730 VerQueryValueW
WINSPOOL.DRV
 0x616750 ClosePrinter
 0x616754 DocumentPropertiesW
 0x616758 EnumPrintersW
 0x61675c None
 0x616760 OpenPrinterW
COMCTL32.DLL
 0x6167fc FlatSB_GetScrollInfo
 0x616800 FlatSB_GetScrollPos
 0x616804 FlatSB_SetScrollInfo
 0x616808 FlatSB_SetScrollPos
 0x61680c FlatSB_SetScrollProp
 0x616810 ImageList_Add
 0x616814 ImageList_BeginDrag
 0x616818 ImageList_Copy
 0x61681c ImageList_Create
 0x616820 ImageList_Destroy
 0x616824 ImageList_DragEnter
 0x616828 ImageList_DragLeave
 0x61682c ImageList_DragMove
 0x616830 ImageList_DragShowNolock
 0x616834 ImageList_Draw
 0x616838 ImageList_DrawEx
 0x61683c ImageList_EndDrag
 0x616840 ImageList_GetBkColor
 0x616844 ImageList_GetDragImage
 0x616848 ImageList_GetIcon
 0x61684c ImageList_GetIconSize
 0x616850 ImageList_GetImageCount
 0x616854 ImageList_GetImageInfo
 0x616858 ImageList_LoadImageW
 0x61685c ImageList_Read
 0x616860 ImageList_Remove
 0x616864 ImageList_Replace
 0x616868 ImageList_ReplaceIcon
 0x61686c ImageList_SetBkColor
 0x616870 ImageList_SetIconSize
 0x616874 ImageList_SetImageCount
 0x616878 ImageList_SetOverlayImage
 0x61687c ImageList_Write
 0x616880 None
 0x616884 InitializeFlatSB
 0x616888 _TrackMouseEvent
COMDLG32.DLL
 0x6168a0 ChooseColorW
 0x6168a4 GetSaveFileNameW
 0x6168a8 GetOpenFileNameW
GDI32.DLL
 0x616a4c AbortDoc
 0x616a50 AngleArc
 0x616a54 Arc
 0x616a58 ArcTo
 0x616a5c BitBlt
 0x616a60 Chord
 0x616a64 CombineRgn
 0x616a68 CopyEnhMetaFileW
 0x616a6c CreateBitmap
 0x616a70 CreateBrushIndirect
 0x616a74 CreateCompatibleBitmap
 0x616a78 CreateCompatibleDC
 0x616a7c CreateDCW
 0x616a80 CreateDIBSection
 0x616a84 CreateDIBitmap
 0x616a88 CreateFontIndirectW
 0x616a8c CreateHalftonePalette
 0x616a90 CreateICW
 0x616a94 CreatePalette
 0x616a98 CreatePenIndirect
 0x616a9c CreateRectRgn
 0x616aa0 CreateSolidBrush
 0x616aa4 DeleteDC
 0x616aa8 DeleteEnhMetaFile
 0x616aac DeleteObject
 0x616ab0 Ellipse
 0x616ab4 EndDoc
 0x616ab8 EndPage
 0x616abc EnumFontFamiliesExW
 0x616ac0 EnumFontsW
 0x616ac4 ExcludeClipRect
 0x616ac8 ExtFloodFill
 0x616acc ExtTextOutW
 0x616ad0 FrameRgn
 0x616ad4 GdiFlush
 0x616ad8 GetBitmapBits
 0x616adc GetBrushOrgEx
 0x616ae0 GetClipBox
 0x616ae4 GetCurrentPositionEx
 0x616ae8 GetDIBColorTable
 0x616aec GetDIBits
 0x616af0 GetDeviceCaps
 0x616af4 GetEnhMetaFileBits
 0x616af8 GetEnhMetaFileDescriptionW
 0x616afc GetEnhMetaFileHeader
 0x616b00 GetEnhMetaFilePaletteEntries
 0x616b04 GetNearestPaletteIndex
 0x616b08 GetObjectW
 0x616b0c GetPaletteEntries
 0x616b10 GetPixel
 0x616b14 GetRgnBox
 0x616b18 GetStockObject
 0x616b1c GetSystemPaletteEntries
 0x616b20 GetTextExtentPoint32W
 0x616b24 GetTextExtentPointW
 0x616b28 GetTextMetricsW
 0x616b2c GetWinMetaFileBits
 0x616b30 GetWindowOrgEx
 0x616b34 IntersectClipRect
 0x616b38 LPtoDP
 0x616b3c LineTo
 0x616b40 MaskBlt
 0x616b44 MoveToEx
 0x616b48 PatBlt
 0x616b4c Pie
 0x616b50 PlayEnhMetaFile
 0x616b54 PolyBezier
 0x616b58 PolyBezierTo
 0x616b5c Polygon
 0x616b60 Polyline
 0x616b64 RealizePalette
 0x616b68 RectVisible
 0x616b6c Rectangle
 0x616b70 ResizePalette
 0x616b74 RestoreDC
 0x616b78 RoundRect
 0x616b7c SaveDC
 0x616b80 SelectClipRgn
 0x616b84 SelectObject
 0x616b88 SelectPalette
 0x616b8c SetAbortProc
 0x616b90 SetBkColor
 0x616b94 SetBkMode
 0x616b98 SetBrushOrgEx
 0x616b9c SetDIBColorTable
 0x616ba0 SetDIBits
 0x616ba4 SetEnhMetaFileBits
 0x616ba8 SetMapMode
 0x616bac SetPaletteEntries
 0x616bb0 SetPixel
 0x616bb4 SetPixelV
 0x616bb8 SetROP2
 0x616bbc SetStretchBltMode
 0x616bc0 SetTextColor
 0x616bc4 SetViewportOrgEx
 0x616bc8 SetWinMetaFileBits
 0x616bcc SetWindowOrgEx
 0x616bd0 StartDocW
 0x616bd4 StartPage
 0x616bd8 StretchBlt
 0x616bdc StretchDIBits
 0x616be0 UnrealizeObject
MSIMG32.DLL
 0x616bf0 AlphaBlend
SHELL32.DLL
 0x616c24 CommandLineToArgvW
 0x616c28 DragAcceptFiles
 0x616c2c DragQueryFileA
 0x616c30 SHBrowseForFolderW
 0x616c34 SHGetDesktopFolder
 0x616c38 SHGetMalloc
 0x616c3c SHGetPathFromIDListW
 0x616c40 SHGetSpecialFolderLocation
 0x616c44 ShellExecuteA
 0x616c48 ShellExecuteW
USER32.DLL
 0x616f58 ActivateKeyboardLayout
 0x616f5c AdjustWindowRectEx
 0x616f60 BeginPaint
 0x616f64 CallNextHookEx
 0x616f68 CallWindowProcA
 0x616f6c CallWindowProcW
 0x616f70 CharLowerBuffA
 0x616f74 CharLowerBuffW
 0x616f78 CharLowerW
 0x616f7c CharNextW
 0x616f80 CharUpperBuffA
 0x616f84 CharUpperW
 0x616f88 CheckMenuItem
 0x616f8c ChildWindowFromPoint
 0x616f90 ClientToScreen
 0x616f94 CloseClipboard
 0x616f98 CopyIcon
 0x616f9c CountClipboardFormats
 0x616fa0 CreateAcceleratorTableW
 0x616fa4 CreateIcon
 0x616fa8 CreateIconIndirect
 0x616fac CreateMenu
 0x616fb0 CreatePopupMenu
 0x616fb4 CreateWindowExW
 0x616fb8 DefFrameProcW
 0x616fbc DefMDIChildProcW
 0x616fc0 DefWindowProcW
 0x616fc4 DeleteMenu
 0x616fc8 DestroyCursor
 0x616fcc DestroyIcon
 0x616fd0 DestroyMenu
 0x616fd4 DestroyWindow
 0x616fd8 DispatchMessageA
 0x616fdc DispatchMessageW
 0x616fe0 DrawEdge
 0x616fe4 DrawFocusRect
 0x616fe8 DrawFrameControl
 0x616fec DrawIcon
 0x616ff0 DrawIconEx
 0x616ff4 DrawMenuBar
 0x616ff8 DrawTextExW
 0x616ffc DrawTextW
 0x617000 EmptyClipboard
 0x617004 EnableMenuItem
 0x617008 EnableScrollBar
 0x61700c EnableWindow
 0x617010 EndMenu
 0x617014 EndPaint
 0x617018 EnumChildWindows
 0x61701c EnumClipboardFormats
 0x617020 EnumDisplayMonitors
 0x617024 EnumThreadWindows
 0x617028 EnumWindows
 0x61702c FillRect
 0x617030 FindWindowExW
 0x617034 FindWindowW
 0x617038 FlashWindow
 0x61703c FrameRect
 0x617040 GetActiveWindow
 0x617044 GetCapture
 0x617048 GetClassInfoW
 0x61704c GetClassLongW
 0x617050 GetClassNameW
 0x617054 GetClientRect
 0x617058 GetClipboardData
 0x61705c GetCursor
 0x617060 GetCursorPos
 0x617064 GetDC
 0x617068 GetDCEx
 0x61706c GetDesktopWindow
 0x617070 GetDlgItem
 0x617074 GetFocus
 0x617078 GetForegroundWindow
 0x61707c GetIconInfo
 0x617080 GetKeyNameTextW
 0x617084 GetKeyState
 0x617088 GetKeyboardLayout
 0x61708c GetKeyboardLayoutList
 0x617090 GetKeyboardLayoutNameW
 0x617094 GetKeyboardState
 0x617098 GetLastActivePopup
 0x61709c GetMenu
 0x6170a0 GetMenuItemCount
 0x6170a4 GetMenuItemID
 0x6170a8 GetMenuItemInfoW
 0x6170ac GetMenuState
 0x6170b0 GetMenuStringW
 0x6170b4 GetMessageExtraInfo
 0x6170b8 GetMessagePos
 0x6170bc GetMonitorInfoW
 0x6170c0 GetParent
 0x6170c4 GetPropW
 0x6170c8 GetScrollInfo
 0x6170cc GetScrollPos
 0x6170d0 GetScrollRange
 0x6170d4 GetSubMenu
 0x6170d8 GetSysColor
 0x6170dc GetSysColorBrush
 0x6170e0 GetSystemMenu
 0x6170e4 GetSystemMetrics
 0x6170e8 GetTopWindow
 0x6170ec GetWindow
 0x6170f0 GetWindowDC
 0x6170f4 GetWindowLongW
 0x6170f8 GetWindowPlacement
 0x6170fc GetWindowRect
 0x617100 GetWindowTextW
 0x617104 GetWindowThreadProcessId
 0x617108 InflateRect
 0x61710c InsertMenuItemW
 0x617110 InsertMenuW
 0x617114 InvalidateRect
 0x617118 IsChild
 0x61711c IsClipboardFormatAvailable
 0x617120 IsDialogMessageA
 0x617124 IsDialogMessageW
 0x617128 IsIconic
 0x61712c IsWindow
 0x617130 IsWindowEnabled
 0x617134 IsWindowUnicode
 0x617138 IsWindowVisible
 0x61713c IsZoomed
 0x617140 KillTimer
 0x617144 LoadBitmapW
 0x617148 LoadCursorW
 0x61714c LoadIconW
 0x617150 LoadKeyboardLayoutW
 0x617154 LoadStringW
 0x617158 LockSetForegroundWindow
 0x61715c MapVirtualKeyW
 0x617160 MapWindowPoints
 0x617164 MessageBoxA
 0x617168 MessageBoxW
 0x61716c MonitorFromPoint
 0x617170 MonitorFromRect
 0x617174 MonitorFromWindow
 0x617178 MsgWaitForMultipleObjects
 0x61717c MsgWaitForMultipleObjectsEx
 0x617180 OffsetRect
 0x617184 OpenClipboard
 0x617188 PeekMessageA
 0x61718c PeekMessageW
 0x617190 PostMessageW
 0x617194 PostQuitMessage
 0x617198 PtInRect
 0x61719c RedrawWindow
 0x6171a0 RegisterClassW
 0x6171a4 RegisterClipboardFormatW
 0x6171a8 RegisterWindowMessageW
 0x6171ac ReleaseCapture
 0x6171b0 ReleaseDC
 0x6171b4 RemoveMenu
 0x6171b8 RemovePropW
 0x6171bc ScreenToClient
 0x6171c0 ScrollWindow
 0x6171c4 SendMessageA
 0x6171c8 SendMessageW
 0x6171cc SetActiveWindow
 0x6171d0 SetCapture
 0x6171d4 SetClassLongW
 0x6171d8 SetClipboardData
 0x6171dc SetCursor
 0x6171e0 SetCursorPos
 0x6171e4 SetFocus
 0x6171e8 SetForegroundWindow
 0x6171ec SetMenu
 0x6171f0 SetMenuItemInfoW
 0x6171f4 SetParent
 0x6171f8 SetPropW
 0x6171fc SetRect
 0x617200 SetScrollInfo
 0x617204 SetScrollPos
 0x617208 SetScrollRange
 0x61720c SetTimer
 0x617210 SetWindowLongA
 0x617214 SetWindowLongW
 0x617218 SetWindowPlacement
 0x61721c SetWindowPos
 0x617220 SetWindowTextW
 0x617224 SetWindowsHookExW
 0x617228 ShowOwnedPopups
 0x61722c ShowScrollBar
 0x617230 ShowWindow
 0x617234 SystemParametersInfoW
 0x617238 TrackPopupMenu
 0x61723c TranslateMDISysAccel
 0x617240 TranslateMessage
 0x617244 UnhookWindowsHookEx
 0x617248 UnregisterClassW
 0x61724c UpdateWindow
 0x617250 WaitMessage
 0x617254 WindowFromPoint
 0x617258 wsprintfA
WINMM.DLL
 0x617268 timeGetTime
OLE32.DLL
 0x617298 CoCreateInstance
 0x61729c CoInitialize
 0x6172a0 CoInitializeEx
 0x6172a4 CoTaskMemAlloc
 0x6172a8 CoTaskMemFree
 0x6172ac CoUninitialize
 0x6172b0 IsEqualGUID
 0x6172b4 OleInitialize
 0x6172b8 OleUninitialize
OLEAUT32.DLL
 0x617304 GetErrorInfo
 0x617308 SafeArrayAccessData
 0x61730c SafeArrayCreate
 0x617310 SafeArrayGetElement
 0x617314 SafeArrayGetLBound
 0x617318 SafeArrayGetUBound
 0x61731c SafeArrayPtrOfIndex
 0x617320 SafeArrayPutElement
 0x617324 SafeArrayUnaccessData
 0x617328 SysAllocStringLen
 0x61732c SysFreeString
 0x617330 SysReAllocStringLen
 0x617334 VariantChangeType
 0x617338 VariantClear
 0x61733c VariantCopy
 0x617340 VariantInit

EAT(Export Address Table) Library

0x429af0 @@Array_source@Finalize
0x429ae0 @@Array_source@Initialize
0x43d650 @@Basethread_source@Finalize
0x43d640 @@Basethread_source@Initialize
0x42b870 @@Datacache_source@Finalize
0x42b860 @@Datacache_source@Initialize
0x4023ec @@Drivenode_source@Finalize
0x4023dc @@Drivenode_source@Initialize
0x442d28 @@Drivetreemapnode_source@Finalize
0x442d18 @@Drivetreemapnode_source@Initialize
0x402594 @@Filenode_source@Finalize
0x402584 @@Filenode_source@Initialize
0x407d54 @@Filesystemnode_source@Finalize
0x407d44 @@Filesystemnode_source@Initialize
0x442ffc @@Filetreemapnode_source@Finalize
0x442fec @@Filetreemapnode_source@Initialize
0x43221c @@Filter_source@Finalize
0x43220c @@Filter_source@Initialize
0x43da08 @@Filterthread_source@Finalize
0x43d9f8 @@Filterthread_source@Initialize
0x407e24 @@Foldernode_source@Finalize
0x407e14 @@Foldernode_source@Initialize
0x4431cc @@Foldertreemapnode_source@Finalize
0x4431bc @@Foldertreemapnode_source@Initialize
0x407f54 @@Freespacenode_source@Finalize
0x407f44 @@Freespacenode_source@Initialize
0x44352c @@Freespacetreemapnode_source@Finalize
0x44351c @@Freespacetreemapnode_source@Initialize
0x408d4c @@Frmabout_source@Finalize
0x408d3c @@Frmabout_source@Initialize
0x40ecfc @@Frmconfig_source@Finalize
0x40ecec @@Frmconfig_source@Initialize
0x40f8ac @@Frmconsole_source@Finalize
0x40f89c @@Frmconsole_source@Initialize
0x41c594 @@Frmexport_source@Finalize
0x41c584 @@Frmexport_source@Initialize
0x41c7bc @@Frmhelp_source@Finalize
0x41c7ac @@Frmhelp_source@Initialize
0x4201cc @@Frmmain_source@Finalize
0x4201bc @@Frmmain_source@Initialize
0x422a18 @@Frmstart_source@Finalize
0x422a08 @@Frmstart_source@Initialize
0x429ad0 @@Frmview_source@Finalize
0x429ac0 @@Frmview_source@Initialize
0x40806c @@Missingdatanode_source@Finalize
0x40805c @@Missingdatanode_source@Initialize
0x443710 @@Missingdatatreemapnode_source@Finalize
0x443700 @@Missingdatatreemapnode_source@Initialize
0x43290c @@Ntfs_source@Finalize
0x4328fc @@Ntfs_source@Initialize
0x43311c @@Shell_source@Finalize
0x43310c @@Shell_source@Initialize
0x43dc10 @@Snifthread_source@Finalize
0x43dc00 @@Snifthread_source@Initialize
0x4342b4 @@Tooltip_source@Finalize
0x4342a4 @@Tooltip_source@Initialize
0x448420 @@Treemapnode_source@Finalize
0x448410 @@Treemapnode_source@Initialize
0x40818c @@Unknownspacenode_source@Finalize
0x40817c @@Unknownspacenode_source@Initialize
0x4488bc @@Unknownspacetreemapnode_source@Finalize
0x4488ac @@Unknownspacetreemapnode_source@Initialize
0x435e90 @@Utils_source@Finalize
0x435e78 @@Utils_source@Initialize
0x43e0d8 @@Watchthread_source@Finalize
0x43e0c8 @@Watchthread_source@Initialize
0x43a7a0 @showCommandLineHelp$qv
0x4018d5 __GetExceptDLLinfo
0x5ba0ac ___CPPdebugHook
0x5e1cd0 _frmAbout
0x5e1cd8 _frmConfig
0x5e1ce0 _frmConsole
0x5e1ce8 _frmExport
0x5e1cf4 _frmMain
0x5e1d00 _frmStart
0x5cf748 _requestedScans


Similarity measure (PE file only) - Checking for service failure