Architecture |
IMAGE_FILE_MACHINE_I386
|
---|---|
Subsystem |
IMAGE_SUBSYSTEM_WINDOWS_GUI
|
Compilation Date | 2007-Nov-19 05:16:02 |
Detected languages |
English - United States
|
Debug artifacts |
C:\a\b\a_VVG9OPZI\s\CSAdminKit\development2\bin\dll\klactgui.pdb
|
CompanyName | AO Kaspersky Lab |
LegalCopyright | © 2021 AO Kaspersky Lab |
LegalTrademarks | Registered trademarks and service marks are the property of their respective owners |
ProductName | Kaspersky Security Center |
ProductVersion | 13.2.0.1511 |
FileVersion | 13.2.0.1511 |
FileDescription | Kaspersky Security Center Remote Diagnostics Utility |
InternalName | KLACTGUI |
OriginalFilename | KLACTGUI.EXE |
Info | Matching compiler(s): |
Microsoft Visual C++ 6.0 - 8.0
MASM/TASM - sig1(h) |
Suspicious | Strings found in the binary may indicate undesirable behavior: |
Contains references to system / monitoring tools:
|
Suspicious | The PE is possibly packed. |
Unusual section name found: .didat
Unusual section name found: .trc |
Suspicious | The PE contains functions most legitimate programs don't use. |
[!] The program may be hiding some of its imports:
|
Info | The PE is digitally signed. |
Signer: Kaspersky Lab JSC
Issuer: DigiCert High Assurance Code Signing CA-1 |
Safe | VirusTotal score: 0/65 (Scanned on 2021-12-13 06:13:55) | All the AVs think this file is safe. |
e_magic | MZ |
---|---|
e_cblp | 0x90 |
e_cp | 0x3 |
e_crlc | 0 |
e_cparhdr | 0x4 |
e_minalloc | 0 |
e_maxalloc | 0xffff |
e_ss | 0 |
e_sp | 0xb8 |
e_csum | 0 |
e_ip | 0 |
e_cs | 0 |
e_ovno | 0 |
e_oemid | 0 |
e_oeminfo | 0 |
e_lfanew | 0x110 |
Signature | PE |
---|---|
Machine |
IMAGE_FILE_MACHINE_I386
|
NumberofSections | 7 |
TimeDateStamp | 2007-Nov-19 05:16:02 |
PointerToSymbolTable | 0 |
NumberOfSymbols | 0 |
SizeOfOptionalHeader | 0xe0 |
Characteristics |
IMAGE_FILE_32BIT_MACHINE
IMAGE_FILE_EXECUTABLE_IMAGE
IMAGE_FILE_LARGE_ADDRESS_AWARE
|
Magic | PE32 |
---|---|
LinkerVersion | 14.0 |
SizeOfCode | 0x57800 |
SizeOfInitializedData | 0x8fa00 |
SizeOfUninitializedData | 0 |
AddressOfEntryPoint | 0x00051F40 (Section: .text) |
BaseOfCode | 0x1000 |
BaseOfData | 0x59000 |
ImageBase | 0x400000 |
SectionAlignment | 0x1000 |
FileAlignment | 0x200 |
OperatingSystemVersion | 5.1 |
ImageVersion | 0.0 |
SubsystemVersion | 5.1 |
Win32VersionValue | 0 |
SizeOfImage | 0xec000 |
SizeOfHeaders | 0x400 |
Checksum | 0xf5959 |
Subsystem |
IMAGE_SUBSYSTEM_WINDOWS_GUI
|
DllCharacteristics |
IMAGE_DLLCHARACTERISTICS_DYNAMIC_BASE
IMAGE_DLLCHARACTERISTICS_GUARD_CF
IMAGE_DLLCHARACTERISTICS_NX_COMPAT
IMAGE_DLLCHARACTERISTICS_TERMINAL_SERVER_AWARE
|
SizeofStackReserve | 0x100000 |
SizeofStackCommit | 0x1000 |
SizeofHeapReserve | 0x100000 |
SizeofHeapCommit | 0x1000 |
LoaderFlags | 0 |
NumberOfRvaAndSizes | 16 |
klcsstd2.dll |
?TmpGetRootFolder@KLSTD@@YA?AV?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@_N@Z
KLSTD_WideToUtf8Helper KLSTD_ChkOutPtr ?KLPARLOG_LogParams2@@YAXHPB_WPBVParams@KLPAR@@@Z KLSTD_ThrowLastErrorCode ?KLSTD_GetHostAndDomainName@@YAXAAV?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@PAV12@PAW4KlDomainType@KLSTD@@@Z ?GetArrayValue@KLPAR@@YA?AV?$CAutoPtr@VArrayValue@KLPAR@@@KLSTD@@PAVParams@1@PB_W@Z ?GetParamsValue@KLPAR@@YA?AV?$CAutoPtr@VParams@KLPAR@@@KLSTD@@PAVParams@1@PB_W@Z KLSTD_CopyFile ?KLSTD_IfExists@@YA_NPB_W@Z ?KLSTD_CreateGUIDString@@YA?AV?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@XZ ?KLSTD_Unlink@@YA_NPB_W_N@Z ?KLSTD_GetTempFile@@YAXAAV?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@@Z KLSTD_CreatePath ?KLSTD_PathAppend@@YA_NABV?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@0AAV12@_N@Z ?KLSTD_GetArgc@@YAHXZ ?KLSTD_GetArgvW@@YAPAPA_WXZ KLSTD_StParseCommandineW ?KLSTD_SetupCmdlineDataW@@YAXHQAPA_W@Z ?KLSTD_ParseCmdlineW@@YAXPB_WPAPA_WPA_WPAH3@Z ?InitMain_DeinitCallbacks@KLINITMAIN@@YAXXZ ?InitMain_InitCallbacks@KLINITMAIN@@YAXPB_W@Z ?GetModuleTraceLevel@KLSTD@@YAHPB_W@Z ?assertion_check@KLSTD@@YAX_NPBD1H@Z ?TraceCommonNew@KLSTD_TRACING@@YAXHPB_W0PAW4TraceArgType@1@PAPBXI@Z KLSTD_CreateCriticalSection KLDBG_StartMeasureA KLSTD_Check KLDBG_EndMeasureA ?FileCreate@KLSTD@@YA?AV?$CAutoPtr@VFile@KLSTD@@@1@PB_WKKK@Z ?GetIntValue@KLPAR@@YAJPAVParams@1@PB_W@Z KLSTD_DeletePath ?GetStringValue@KLPAR@@YA?AV?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@PAVParams@1@PB_W@Z ?CreateValue@KLPAR@@YAXPB_WPAPAVStringValue@1@@Z ?_GetParamsNames@KLPAR@@YAXPBVParams@1@AAV?$vector@V?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@V?$allocator@V?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@@2@@std@@@Z ?KLSTD_SplitPath@@YAXABV?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@AAV12@11@Z ?SayFailure2@KLERR@@YAXHPAVError@1@PB_WPBDH2@Z ?klak_winver@@YIIXZ ?klak_winmajor@@YIIXZ KLERR_CreateUnknownException KLERR_ConvertExceptionFromStringA KLERR_ConvertException ?KLSTD_SplitString@@YAXABV?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@0AAV?$vector@V?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@V?$allocator@V?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@@2@@2@@Z KLSTD_ThrowLastError KLPAR_CreateParams KLERR_throwError ?DeinitTrace@KLSTD@@YAXXZ ?StartTrace@KLSTD@@YAXHPB_WH@Z ?CreateValue@KLPAR@@YAXJPAPAVIntValue@1@@Z ?InitTrace@KLSTD@@YAXXZ ?KLSTD_SetDefaultProductAndVersion@@YAXABV?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@0@Z ?KLERR_LoadModuleLocalizations@@YAXPB_WPBUErrLocModule@KLERR@@I@Z ?SetupServiceDirectory@KLSTD@@YAXXZ KLERR_LocFormatErrorString KLSTD_FreeWSTR KLERR_IsErrorLocalized ?KLSTD_GetTraceInfoW@@YAXHPAPA_WPB_W1AAV?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@AAH@Z ?CInitMainUt_Deinit@KLINITMAIN@@YAXXZ ?CInitMainUt_Init@KLINITMAIN@@YAXPB_W00@Z KLSTD_Deinitialize ?KLPAR_Deinitialize@@YAXXZ ?KLPAR_Initialize@@YAXXZ KLSTD_Initialize |
---|---|
klcstr2.dll |
?KLTR_MakeLocation@@YA?AV?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@PB_WH00@Z
?KLPXG2_WrapConnection@@YAXPAVTransportProxy@KLTRAP@@PAPAVConnectionWrapper@KLPXG2@@@Z ??1TransportProxy@KLTRAP@@UAE@XZ ??0TransportProxy@KLTRAP@@QAE@XZ ?KLTR_SplitAddress@@YAXPB_WPAV?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@PAH11@Z |
klcskca2.dll |
?DecodeFilePath@KLACDTAPI@@YAXPB_WPAV?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@PA_K@Z
?IsServer@KLACDTAPI@@YA_NPB_W@Z ?CompressFile@KLACDTAPI@@YAXPB_W00_NW4ACDT_ARTYPE@1@@Z ?GetProductVal@KLACDTAPI@@YA?AV?$CAutoPtr@VValue@KLPAR@@@KLSTD@@V?$CAutoPtr@VParams@KLPAR@@@3@PB_W1_N@Z ?CompressFolder@KLACDTAPI@@YAXPB_W00_N1W4ACDT_ARTYPE@1@@Z ?IsNagent@KLACDTAPI@@YA_NPB_W@Z |
klcssrvp2.dll |
?KLCSSRVP_Deinitialize@@YAXXZ
?CheckServerVersion@KLADMSRV@@YA_NPAVKLBaseQI@KLSTD@@J_N@Z ?KLADMSRV_CreateAdmServer4@@YAXPB_WPAPAVAdmServer@KLADMSRV@@ABV?$vector@UComponentId@KLPRCI@@V?$allocator@UComponentId@KLPRCI@@@std@@@std@@JPBH_N000PAVBinaryValue@KLPAR@@PBUproxyhost_info_t@2@4PAVKLBaseQI@KLSTD@@@Z KLACDTAPI_ConnectThroughCifs KLACDTAPI_ConnectThroughAdmServer ?KLCSSRVP_Initialize@@YAXXZ |
klqrcgen.dll |
?BufferFree@KLQRCGEN@@YAXPAUBuffer@1@@Z
?Generate@KLQRCGEN@@YAPAUBuffer@1@PBDHHPAH@Z |
KERNEL32.dll |
VirtualProtect
VirtualQuery LoadLibraryExA IsDebuggerPresent EncodePointer HeapAlloc HeapFree GetProcessHeap InitializeSListHead InterlockedPopEntrySList InterlockedPushEntrySList QueryPerformanceFrequency MoveFileW QueryPerformanceCounter WaitForSingleObject CreateProcessW GetFileAttributesW InitializeCriticalSection GetEnvironmentVariableW FlushInstructionCache IsProcessorFeaturePresent VirtualAlloc VirtualFree UnhandledExceptionFilter SetUnhandledExceptionFilter SetEvent ResetEvent WaitForSingleObjectEx CreateEventW GetStartupInfoW GetSystemTimeAsFileTime GetSystemInfo ExpandEnvironmentStringsW GetWindowsDirectoryW GetSystemDirectoryW GetLongPathNameW GetCurrentProcess GetModuleHandleW LocalFree lstrlenW FormatMessageW SetErrorMode SetFileApisToANSI GetCurrentThreadId EnterCriticalSection LeaveCriticalSection FreeLibrary GetProcAddress lstrcmpiW RaiseException GetLastError MultiByteToWideChar SizeofResource LoadResource FindResourceW LoadLibraryExW GetModuleFileNameW InitializeCriticalSectionAndSpinCount DeleteCriticalSection TlsAlloc TlsGetValue TlsSetValue CreateThread CloseHandle DecodePointer LoadLibraryW GetCommandLineW MulDiv VerifyVersionInfoW VerSetConditionMask SetLastError lstrcmpW CompareStringW lstrlenA GlobalAlloc GlobalLock GlobalUnlock GlobalFree GetLocalTime LockResource GetTickCount DebugBreak OutputDebugStringW GetCurrentProcessId FindFirstFileW FindClose GetModuleHandleExW TerminateProcess |
USER32.dll |
IsWindowEnabled
GetSysColor GetFocus DrawFocusRect GetClassNameW GetDlgCtrlID CallWindowProcW UnionRect LoadIconW GetWindowDC CharUpperW CharLowerW CreateDialogParamW CheckMenuRadioItem SetMenuItemInfoW GetMenuItemInfoW SetMenuDefaultItem DestroyMenu SetMenu KillTimer PostThreadMessageW ModifyMenuW GetMenuItemCount UnhookWindowsHookEx TrackPopupMenuEx MonitorFromPoint CallNextHookEx SetWindowsHookExW IsMenu SetTimer DestroyIcon IsChild LoadStringA PostQuitMessage GetSystemMetrics TranslateAcceleratorW InflateRect AppendMenuW LoadBitmapW RemoveMenu CreatePopupMenu DrawEdge WindowFromPoint GetSysColorBrush FrameRect DrawFrameControl GetKeyState RegisterWindowMessageW GetMenuItemID GetScrollInfo GetWindowThreadProcessId GetClassLongW SystemParametersInfoW RedrawWindow IsWindowVisible SetCapture ReleaseCapture GetCapture PtInRect GetCursorPos DefWindowProcW InvalidateRect ScrollWindowEx SetScrollInfo EndPaint BeginPaint SetRectEmpty OffsetRect SetRect DrawTextW DialogBoxParamW IsWindow PostMessageW GetMessagePos FillRect SetCursor SetFocus ReleaseDC GetDC IsDialogMessageW EnableWindow GetActiveWindow MoveWindow ScreenToClient CreateWindowExW LoadImageW LoadCursorW GetClassInfoExW RegisterClassExW LoadAcceleratorsW LoadMenuW MessageBeep MsgWaitForMultipleObjects MessageBoxW PeekMessageW GetMessageW TranslateMessage DispatchMessageW SetForegroundWindow ShowWindow GetWindowTextW GetWindowTextLengthW UnregisterClassW SetWindowLongW DestroyWindow GetDlgItem UpdateWindow LockWindowUpdate EndDialog SetDlgItemTextW LoadStringW SetWindowTextW GetWindow GetWindowLongW MonitorFromWindow GetMonitorInfoW GetWindowRect GetParent GetClientRect MapWindowPoints SetWindowPos SendMessageW SetScrollPos CharNextW GetSubMenu |
GDI32.dll |
GetDeviceCaps
CreateRectRgnIndirect DeleteDC GetObjectW GetStockObject SelectObject SetViewportOrgEx SetBkMode SetTextColor CreateFontIndirectW DPtoLP CreateICW LPtoDP GetTextExtentPoint32W CreateCompatibleDC CreatePatternBrush CreateBitmap PatBlt CreateDIBSection GetCurrentObject SetBkColor BitBlt SetBrushOrgEx CreateCompatibleBitmap ExcludeClipRect CombineRgn DeleteObject |
ADVAPI32.dll |
RegDeleteKeyW
RegCloseKey RegOpenKeyExW RegSetValueExW RegCreateKeyExW RegDeleteValueW RegQueryValueExW RegEnumValueW RegQueryInfoKeyW RegEnumKeyExW |
MSVCP140.dll |
??0?$basic_istream@_WU?$char_traits@_W@std@@@std@@QAE@PAV?$basic_streambuf@_WU?$char_traits@_W@std@@@1@_N@Z
??6?$basic_ostream@_WU?$char_traits@_W@std@@@std@@QAEAAV01@K@Z ?_Osfx@?$basic_ostream@_WU?$char_traits@_W@std@@@std@@QAEXXZ ??0?$basic_ios@_WU?$char_traits@_W@std@@@std@@IAE@XZ ?_Init@?$basic_streambuf@_WU?$char_traits@_W@std@@@std@@IAEXXZ ??0?$basic_streambuf@_WU?$char_traits@_W@std@@@std@@IAE@XZ ?sputn@?$basic_streambuf@_WU?$char_traits@_W@std@@@std@@QAE_JPB_W_J@Z ?imbue@?$basic_streambuf@_WU?$char_traits@_W@std@@@std@@MAEXABVlocale@2@@Z ?setbuf@?$basic_streambuf@_WU?$char_traits@_W@std@@@std@@MAEPAV12@PA_W_J@Z ?xsgetn@?$basic_streambuf@_WU?$char_traits@_W@std@@@std@@MAE_JPA_W_J@Z ?uflow@?$basic_streambuf@_WU?$char_traits@_W@std@@@std@@MAEGXZ ?showmanyc@?$basic_streambuf@_WU?$char_traits@_W@std@@@std@@MAE_JXZ ?xsputn@?$basic_streambuf@_WU?$char_traits@_W@std@@@std@@MAE_JPB_W_J@Z ?sync@?$basic_streambuf@_WU?$char_traits@_W@std@@@std@@MAEHXZ ?_Lock@?$basic_streambuf@_WU?$char_traits@_W@std@@@std@@UAEXXZ ?_Unlock@?$basic_streambuf@_WU?$char_traits@_W@std@@@std@@UAEXXZ ?sputc@?$basic_streambuf@_WU?$char_traits@_W@std@@@std@@QAEG_W@Z ?uncaught_exception@std@@YA_NXZ ?flush@?$basic_ostream@_WU?$char_traits@_W@std@@@std@@QAEAAV12@XZ ??1?$basic_streambuf@_WU?$char_traits@_W@std@@@std@@UAE@XZ ?_Pninc@?$basic_streambuf@_WU?$char_traits@_W@std@@@std@@IAEPA_WXZ ??1?$basic_ostream@_WU?$char_traits@_W@std@@@std@@UAE@XZ ??1?$basic_ios@_WU?$char_traits@_W@std@@@std@@UAE@XZ ?_Xlength_error@std@@YAXPBD@Z ??0?$basic_ostream@_WU?$char_traits@_W@std@@@std@@QAE@PAV?$basic_streambuf@_WU?$char_traits@_W@std@@@1@_N@Z ??6?$basic_ostream@_WU?$char_traits@_W@std@@@std@@QAEAAV01@P6AAAVios_base@1@AAV21@@Z@Z ??6?$basic_ostream@_WU?$char_traits@_W@std@@@std@@QAEAAV01@H@Z ??6?$basic_ostream@_WU?$char_traits@_W@std@@@std@@QAEAAV01@J@Z ?classic@locale@std@@SAABV12@XZ ?imbue@?$basic_ios@_WU?$char_traits@_W@std@@@std@@QAE?AVlocale@2@ABV32@@Z ?_Xout_of_range@std@@YAXPBD@Z ??6?$basic_ostream@_WU?$char_traits@_W@std@@@std@@QAEAAV01@I@Z ??1?$basic_istream@_WU?$char_traits@_W@std@@@std@@UAE@XZ ?in@?$codecvt@_WDU_Mbstatet@@@std@@QBEHAAU_Mbstatet@@PBD1AAPBDPA_W3AAPA_W@Z ?out@?$codecvt@_WDU_Mbstatet@@@std@@QBEHAAU_Mbstatet@@PB_W1AAPB_WPAD3AAPAD@Z ??1_Lockit@std@@QAE@XZ ??0_Lockit@std@@QAE@H@Z ?_Getgloballocale@locale@std@@CAPAV_Locimp@12@XZ ??Bid@locale@std@@QAEIXZ ?_Getcat@?$ctype@_W@std@@SAIPAPBVfacet@locale@2@PBV42@@Z ?id@?$ctype@_W@std@@2V0locale@2@A ?always_noconv@codecvt_base@std@@QBE_NXZ ?unshift@?$codecvt@_WDU_Mbstatet@@@std@@QBEHAAU_Mbstatet@@PAD1AAPAD@Z ?_Fiopen@std@@YAPAU_iobuf@@PB_WHH@Z ?id@?$codecvt@_WDU_Mbstatet@@@std@@2V0locale@2@A ?_Getcat@?$codecvt@_WDU_Mbstatet@@@std@@SAIPAPBVfacet@locale@2@PBV42@@Z ?tolower@?$ctype@_W@std@@QBE_W_W@Z ?getloc@?$basic_streambuf@_WU?$char_traits@_W@std@@@std@@QBE?AVlocale@2@XZ ?setstate@?$basic_ios@_WU?$char_traits@_W@std@@@std@@QAEXH_N@Z |
COMCTL32.dll |
ImageList_Draw
ImageList_GetImageCount CreateStatusWindowW ImageList_GetIcon ImageList_LoadImageW ImageList_Destroy ImageList_AddMasked ImageList_Create _TrackMouseEvent ImageList_DrawIndirect InitCommonControlsEx |
MSIMG32.dll |
GradientFill
|
UxTheme.dll |
DrawThemeBackground
GetThemeInt OpenThemeData CloseThemeData |
VERSION.dll |
GetFileVersionInfoSizeW
GetFileVersionInfoW VerQueryValueW |
gdiplus.dll |
GdiplusStartup
GdipCreateBitmapFromStream GdipCloneImage GdipDisposeImage GdipAlloc GdipFree GdipCreateHBITMAPFromBitmap |
VCRUNTIME140.dll |
memcpy
_CxxThrowException _except_handler4_common __CxxFrameHandler3 __std_terminate wcsstr wcschr _purecall wcsrchr __std_exception_copy __std_exception_destroy memmove memset |
api-ms-win-crt-runtime-l1-1-0.dll |
_invalid_parameter_noinfo
_controlfp_s _errno _register_thread_local_exe_atexit_callback _c_exit __p__wcmdln _exit exit _initterm_e _initterm _get_wide_winmain_command_line _initialize_wide_environment _configure_wide_argv _set_app_type _seh_filter_exe terminate _cexit _crt_atexit _register_onexit_function _initialize_onexit_table _beginthreadex __p___wargv _invalid_parameter_noinfo_noreturn |
api-ms-win-crt-stdio-l1-1-0.dll |
fwrite
fgetpos _fseeki64 fsetpos setvbuf fflush ungetwc fgetwc fgetc fclose ungetc __stdio_common_vswprintf_s _set_fmode __p__commode fputwc __stdio_common_vswprintf |
api-ms-win-crt-locale-l1-1-0.dll |
_configthreadlocale
_wsetlocale |
api-ms-win-crt-heap-l1-1-0.dll |
_recalloc
_callnewh _set_new_mode malloc free |
api-ms-win-crt-string-l1-1-0.dll |
_wcsicmp
wcsncpy iswdigit strncpy_s wcsncpy_s _stricmp _strnicmp wcscpy_s |
api-ms-win-crt-convert-l1-1-0.dll |
wcstol
_wtoi _wtoi64 |
api-ms-win-crt-filesystem-l1-1-0.dll |
_wmakepath
_wsplitpath _unlock_file _lock_file |
api-ms-win-crt-math-l1-1-0.dll |
_except1
__setusermatherr |
SHELL32.dll (delay-loaded) |
SHGetFolderPathW
ShellExecuteW |
Attributes | 0x1 |
---|---|
Name | SHELL32.dll |
ModuleHandle | 0x70940 |
DelayImportAddressTable | 0x72014 |
DelayImportNameTable | 0x69a24 |
BoundDelayImportTable | 0x69af8 |
UnloadDelayImportTable | 0 |
TimeStamp | 1970-Jan-01 00:00:00 |
&OK |
&Cancel |
Kaspersky Administration Kit Remote Diagnostics Utility |
&Logon |
&Next |
Error while accessing target computer ! |
Error occured while processing '%1': |
'%2'. |
%1 |
Version %2 Build %3 |
%4 |
Access through Kaspersky Administration Server |
Access through Microsoft Windows Network |
Connect using provided user name/password |
Connect as current user |
Target computer |
User name |
Product state: Running |
Product state: Stopped |
Tracing: Turned on, Trace level %1 |
Tracing: Turned off |
Trace file: Exists (%1), %2 %3 |
Trace file: Not exists |
Diagnostics logfile: Exists, %1 %2 |
Diagnostics logfile: Not exists |
bytes |
Kb |
Mb |
Gb |
Version: %1 |
Start Product |
Stop Product |
Restart Product |
Settings |
Acquire file |
Acquire last %1 %2 of file |
Make dump... |
Execute command... |
Delete file |
Turn on tracing... |
Turn off tracing |
Change tracing level |
Crash dumps |
Crash dump %1. Size: %2 %3. |
Acquire System Eventlog |
Acquire Application Eventlog |
Acquire Kaspersky Eventlog |
Execute diagnostics |
Downloads folder |
Downloaded into file(s): |
Starting product "%1"... |
Stopping product "%1"... |
Restarting product "%1"... |
Running diagnostics for product "%1"... |
Changing trace level for product "%1"... |
Refreshing... |
Deleting remote file "%1"... |
Saving Eventlog "%1"... |
Making dump for process "%1"... |
Running custom utility '%1'... |
Saving settings... |
Downloading remote file "%1", saving it as "%2"... |
Operation completed successfully |
Pasword |
Administration Server |
Use SSL |
Compress traffic |
&Browse |
Slave Server |
Target computer belongs to a slave server |
Compress CAB-files |
Error %1 occured (%2). |
Acquire %1 |
Acquire Settings |
Trace files |
Eventlogs |
Display name |
DNS name |
Windows name |
Windows domain |
IP address |
Select computer |
Select slave server |
&Select |
&Find |
Name mask |
Executable name to make dump |
Make dump |
Run utility |
Upload whole folder |
Command line arguments |
Trace level: |
Select trace level |
About |
Delete downloads folder '%1' with all contents ? |
Acquire system information |
System information |
Saving system information... |
Executable name |
The utility is expected to write into stdout or into the folder %KLACDT_SAVE_SETTINGS%. |
At least Kaspersky Network Agent 8.0 is required to be installed on the target computer. |
Another instance of Remote Diagnostics Utility has already connected to the host. |
Host must have Network Agent installed. The Network Agent must be active and must connect to the specified Administration Server. |
Delete files... |
Select files to delete |
File name |
Deleting selected files... |
Remote installation logs |
Installation logs |
MSI logs |
Attention! Trace file may contain confidential data! |
Windows Update logs |
Changing rotation trace level for product "%1"... |
Base tracing |
Rotated tracing |
Download... |
Start |
Cancel |
Tracing: Turned on (without rotating), Trace level %1 |
Tracing: Turned on, Trace level %1, Rotating using %2 x %3 MB |
Parts count: |
Max part size (MB): |
Xperf tracing: Turned on (without rotating). %1. %2 |
Xperf tracing: Turned on. %1. %2. Rotating using %3 MB |
Xperf tracing: Turned off |
Xperf tracing: Turned on, Trace level %1 |
Xperf files |
Turn on Xperf tracing... |
Turn off Xperf tracing |
Change Xperf tracing level |
Light level |
High level |
Basic type |
On reboot type |
Changing base xperf trace level for product "%1"... |
Changing rotation xperf trace level for product "%1"... |
Xperf file: Exists (%1), %2 %3 |
Xperf file: Not exists |
Trace level |
Trace type |
Setup TOTP |
Scan this QR-code by TOTP-application on your mobile device |
Or use this secret string in your TOTP-application |
Enter the validation code generated by your TOTP-application |
Open a new window |
New window |
Close session |
Disconnect |
Immediately stop execution of current action |
Cancel Current Action (Alt+Break) |
Ready |
Erase the selection |
Erase |
Erase everything |
Erase All (Ctrl+Shift+Del) |
Copy the selection and put it on the Clipboard |
Copy |
Cut the selection and put it on the Clipboard |
Cut |
Find the specified text |
Find |
Insert Clipboard contents |
Paste |
Repeat the last find |
Repeat last find |
Replace specific text with different text |
Replace |
Select the entire document |
Select All |
Undo the last action |
Undo |
Redo the previously undone action |
Redo |
Display program information, version number and copyright |
About |
Quit the application; prompts to save documents |
Exit |
Switch to the next window pane |
Next Pane |
Switch back to the previous window pane |
Previous Pane |
Show or hide the toolbar |
Toggle ToolBar |
Show or hide the status bar |
Toggle StatusBar |
Refresh workstation state |
Refresh |
Change the window size |
Change the window position |
Reduce the window to an icon |
Enlarge the window to full size |
Switch to the next document window |
Switch to the previous document window |
Close the active window and prompts to save the documents |
Restore the window to normal size |
Activate Task List |
Activate this window |
Open this document |
Signature | 0xfeef04bd |
---|---|
StructVersion | 0x10000 |
FileVersion | 13.2.0.1511 |
ProductVersion | 13.2.0.1511 |
FileFlags | (EMPTY) |
FileOs |
VOS_DOS_WINDOWS32
VOS_NT
VOS_NT_WINDOWS32
VOS_WINCE
VOS__WINDOWS32
|
FileType |
VFT_APP
|
Language | English - United States |
CompanyName | AO Kaspersky Lab |
LegalCopyright | © 2021 AO Kaspersky Lab |
LegalTrademarks | Registered trademarks and service marks are the property of their respective owners |
ProductName | Kaspersky Security Center |
ProductVersion (#2) | 13.2.0.1511 |
FileVersion (#2) | 13.2.0.1511 |
FileDescription | Kaspersky Security Center Remote Diagnostics Utility |
InternalName | KLACTGUI |
OriginalFilename | KLACTGUI.EXE |
Resource LangID | UNKNOWN |
---|
Characteristics |
0
|
---|---|
TimeDateStamp | 2007-Nov-19 05:16:02 |
Version | 0.0 |
SizeofData | 89 |
AddressOfRawData | 0x62d8c |
PointerToRawData | 0x6198c |
Referenced File | C:\a\b\a_VVG9OPZI\s\CSAdminKit\development2\bin\dll\klactgui.pdb |
Characteristics |
0
|
---|---|
TimeDateStamp | 2007-Nov-19 05:16:02 |
Version | 0.0 |
SizeofData | 20 |
AddressOfRawData | 0x62de8 |
PointerToRawData | 0x619e8 |
Characteristics |
0
|
---|---|
TimeDateStamp | 2007-Nov-19 05:16:02 |
Version | 0.0 |
SizeofData | 1060 |
AddressOfRawData | 0x62dfc |
PointerToRawData | 0x619fc |
Characteristics |
0
|
---|---|
TimeDateStamp | 2007-Nov-19 05:16:02 |
Version | 0.0 |
SizeofData | 36 |
AddressOfRawData | 0x63220 |
PointerToRawData | 0x61e20 |
StartAddressOfRawData | 0x463254 |
---|---|
EndAddressOfRawData | 0x46325c |
AddressOfIndex | 0x470d40 |
AddressOfCallbacks | 0x459834 |
SizeOfZeroFill | 0 |
Characteristics |
IMAGE_SCN_ALIGN_4BYTES
|
Callbacks | (EMPTY) |
Size | 0xa0 |
---|---|
TimeDateStamp | 1970-Jan-01 00:00:00 |
Version | 0.0 |
GlobalFlagsClear | (EMPTY) |
GlobalFlagsSet | (EMPTY) |
CriticalSectionDefaultTimeout | 0 |
DeCommitFreeBlockThreshold | 0 |
DeCommitTotalFreeThreshold | 0 |
LockPrefixTable | 0 |
MaximumAllocationSize | 0 |
VirtualMemoryThreshold | 0 |
ProcessAffinityMask | 0 |
ProcessHeapFlags | (EMPTY) |
CSDVersion | 0 |
Reserved1 | 0 |
EditList | 0 |
SecurityCookie | 0x46e00c |
SEHandlerTable | 0x4629b0 |
SEHandlerCount | 247 |
GuardCFCheckFunctionPointer | 4560876 |
GuardCFDispatchFunctionPointer | 0 |
GuardCFFunctionTable | 0 |
GuardCFFunctionCount | 0 |
GuardFlags | (EMPTY) |
CodeIntegrity.Flags | 0 |
CodeIntegrity.Catalog | 0 |
CodeIntegrity.CatalogOffset | 0 |
CodeIntegrity.Reserved | 0 |
GuardAddressTakenIatEntryTable | 0 |
GuardAddressTakenIatEntryCount | 0 |
GuardLongJumpTargetTable | 0 |
GuardLongJumpTargetCount | 0 |
XOR Key | 0x987df931 |
---|---|
Unmarked objects | 0 |
Imports (VS2008 SP1 build 30729) | 16 |
199 (41118) | 1 |
C objects (VS 2015/2017 runtime 26706) | 12 |
ASM objects (VS 2015/2017 runtime 26706) | 8 |
Imports (VS 2015/2017 runtime 26706) | 4 |
C++ objects (VS 2015/2017 runtime 26706) | 38 |
C objects (26213) | 1 |
Imports (26213) | 18 |
Imports (27040) | 13 |
Total imports | 545 |
C++ objects (LTCG) (27040) | 13 |
Resource objects (27040) | 1 |
151 | 1 |
Linker (27040) | 1 |