Architecture |
IMAGE_FILE_MACHINE_I386
|
---|---|
Subsystem |
IMAGE_SUBSYSTEM_WINDOWS_GUI
|
Compilation Date | 2022-Oct-10 12:19:45 |
Detected languages |
Dutch - Belgium
English - United States French - Canada German - Germany |
FileDescription | Ashampoo WinOptimizer 25 |
FileVersion | 25.0.0.18 |
InternalName | WO25 |
LegalCopyright | 2022 Ashampoo GmbH & Co. KG |
ProductName | Ashampoo WinOptimizer 25 |
ProductVersion | 25.0.0.18 |
ProgramID | WO25 |
Suspicious | PEiD Signature: | PeStubOEP v1.x |
Suspicious | Strings found in the binary may indicate undesirable behavior: |
Contains references to system / monitoring tools:
|
Info | Cryptographic algorithms detected in the binary: |
Uses constants related to CRC32
Uses constants related to MD5 Uses constants related to SHA1 Uses constants related to Blowfish Uses constants related to DES |
Suspicious | The PE is possibly packed. |
Unusual section name found: .itext
Unusual section name found: .didata |
Malicious | The PE contains functions mostly used by malware. |
[!] The program may be hiding some of its imports:
|
Info | The PE's resources present abnormal characteristics. | The binary may have been compiled on a machine in the UTC+2 timezone. |
Info | The PE is digitally signed. |
Signer: Ashampoo GmbH & Co. KG
Issuer: Symantec Class 3 SHA256 Code Signing CA |
Suspicious | VirusTotal score: 1/68 (Scanned on 2022-12-01 07:13:52) | DrWeb: Program.Unwanted.4873 |
e_magic | MZ |
---|---|
e_cblp | 0x50 |
e_cp | 0x2 |
e_crlc | 0 |
e_cparhdr | 0x4 |
e_minalloc | 0xf |
e_maxalloc | 0xffff |
e_ss | 0 |
e_sp | 0xb8 |
e_csum | 0 |
e_ip | 0 |
e_cs | 0 |
e_ovno | 0x1a |
e_oemid | 0 |
e_oeminfo | 0 |
e_lfanew | 0x100 |
Signature | PE |
---|---|
Machine |
IMAGE_FILE_MACHINE_I386
|
NumberofSections | 10 |
TimeDateStamp | 2022-Oct-10 12:19:45 |
PointerToSymbolTable | 0 |
NumberOfSymbols | 0 |
SizeOfOptionalHeader | 0xe0 |
Characteristics |
IMAGE_FILE_32BIT_MACHINE
IMAGE_FILE_BYTES_REVERSED_HI
IMAGE_FILE_BYTES_REVERSED_LO
IMAGE_FILE_EXECUTABLE_IMAGE
IMAGE_FILE_LINE_NUMS_STRIPPED
IMAGE_FILE_LOCAL_SYMS_STRIPPED
IMAGE_FILE_RELOCS_STRIPPED
|
Magic | PE32 |
---|---|
LinkerVersion | 2.0 |
SizeOfCode | 0x766400 |
SizeOfInitializedData | 0x1dec00 |
SizeOfUninitializedData | 0 |
AddressOfEntryPoint | 0x00764E24 (Section: .itext) |
BaseOfCode | 0x1000 |
BaseOfData | 0x768000 |
ImageBase | 0x400000 |
SectionAlignment | 0x1000 |
FileAlignment | 0x200 |
OperatingSystemVersion | 5.0 |
ImageVersion | 0.0 |
SubsystemVersion | 5.0 |
Win32VersionValue | 0 |
SizeOfImage | 0x979000 |
SizeOfHeaders | 0x400 |
Checksum | 0x94fcb4 |
Subsystem |
IMAGE_SUBSYSTEM_WINDOWS_GUI
|
SizeofStackReserve | 0x100000 |
SizeofStackCommit | 0x4000 |
SizeofHeapReserve | 0x100000 |
SizeofHeapCommit | 0x1000 |
LoaderFlags | 0 |
NumberOfRvaAndSizes | 16 |
icmp.dll |
IcmpCloseHandle
IcmpSendEcho IcmpCreateFile |
---|---|
Shlwapi.dll |
SHLoadIndirectString
|
version.dll |
GetFileVersionInfoSizeW
GetFileVersionInfoSizeA VerQueryValueW VerQueryValueA GetFileVersionInfoW GetFileVersionInfoA |
user32.dll |
CopyImage
MoveWindow SetMenuItemInfoW GetMenuItemInfoW DefFrameProcW GetDlgCtrlID RemovePropA FrameRect RegisterWindowMessageW GetMenuStringW FillRect UnregisterClassA SendMessageA IsClipboardFormatAvailable EnumWindows ShowOwnedPopups GetClassInfoExW GetClassInfoW GetScrollRange SetActiveWindow GetActiveWindow DrawEdge GetKeyboardLayoutList LoadBitmapW EnumChildWindows SendMessageTimeoutA GetScrollBarInfo UnhookWindowsHookEx SetCapture GetCapture ChildWindowFromPointEx CreatePopupMenu ShowCaret GetMenuItemID CharLowerBuffW PostMessageW SetWindowLongW DrawMenuBar IsZoomed SetParent GetClientRect IsChild IntersectRect IsIconic CallNextHookEx FindWindowExA ShowWindow SetForegroundWindow GetWindowTextW GetAsyncKeyState GetWindowTextLengthW PostThreadMessageA DestroyWindow IsDialogMessageW RegisterClassW EndMenu CharNextW GetFocus GetDC SetFocus ReleaseDC ExitWindowsEx CreateWindowExA GetClassLongW DrawTextW SetScrollRange PeekMessageA MessageBeep SetClassLongW SetRectEmpty LockWindowUpdate RemovePropW AttachThreadInput GetSubMenu DestroyIcon IsWindowVisible DispatchMessageA UnregisterClassW GetTopWindow SendMessageW GetMessageTime NotifyWinEvent SendMessageTimeoutW CreateMenu LoadStringW CharLowerW SetWindowRgn SetWindowPos GetMenuItemCount GetSysColorBrush GetWindowDC DrawTextExW EnumClipboardFormats ScrollDC GetScrollInfo SetWindowTextW GetMessageExtraInfo GetSysColor EnableScrollBar TrackPopupMenu DrawIconEx GetClassNameW GetMessagePos GetIconInfo SetScrollInfo GetKeyNameTextW GetDesktopWindow SetCursorPos GetCursorPos SetMenu GetMenuState GetMenu SetRect GetKeyState ValidateRect IsCharAlphaW GetCursor KillTimer BeginDeferWindowPos WaitMessage RegisterClassA TranslateMDISysAccel GetWindowPlacement GetClipboardFormatNameW CreateIconIndirect GetMenuItemRect CreateWindowExW ChildWindowFromPoint GetMessageW GetDCEx PeekMessageW MonitorFromWindow GetUpdateRect AnimateWindow GetPropA SetTimer SetPropA WindowFromPoint BeginPaint DrawStateW RegisterClipboardFormatW MapVirtualKeyW OffsetRect IsWindowUnicode DispatchMessageW TrackPopupMenuEx DefMDIChildProcW WaitForInputIdle GetSystemMenu SetScrollPos GetScrollPos InflateRect DrawFocusRect ReleaseCapture LoadCursorW ScrollWindow GetLastActivePopup GetSystemMetrics CharUpperBuffW GetClassNameA ClientToScreen SetClipboardData GetClipboardData SetWindowPlacement GetMonitorInfoW CheckMenuItem CharUpperW DefWindowProcW GetForegroundWindow ToAscii EnableWindow GetWindowThreadProcessId RedrawWindow SendMessageCallbackA EndPaint MsgWaitForMultipleObjectsEx TrackMouseEvent LoadKeyboardLayoutW EnumDisplaySettingsW GetMenuItemInfoA ActivateKeyboardLayout GetParent MonitorFromRect InsertMenuItemW GetPropW MessageBoxW SetPropW UpdateWindow MsgWaitForMultipleObjects DestroyMenu SetWindowsHookExW EmptyClipboard GetDlgItem AdjustWindowRectEx DrawIcon IsWindow EnumThreadWindows InvalidateRect SetKeyboardState GetKeyboardState DrawFrameControl ScreenToClient IsCharAlphaNumericW WindowFromDC SetCursor GetNextDlgTabItem CreateIcon RemoveMenu SubtractRect GetKeyboardLayoutNameW OpenClipboard TranslateMessage MapWindowPoints EnumDisplayMonitors CallWindowProcW CountClipboardFormats CloseClipboard DestroyCursor PostMessageA MessageBoxExW PostQuitMessage ShowScrollBar EnableMenuItem DeferWindowPos HideCaret EndDeferWindowPos FindWindowExW MonitorFromPoint LoadIconW SystemParametersInfoW GetWindow DefWindowProcA GetWindowLongW GetWindowRect InsertMenuW IsWindowEnabled IsDialogMessageA GetMenuDefaultItem FindWindowW DeleteMenu GetKeyboardLayout |
psapi.dll |
GetProcessImageFileNameA
|
oleaut32.dll |
SafeArrayPutElement
SetErrorInfo GetErrorInfo VariantInit VariantClear SysFreeString SafeArrayAccessData SysReAllocStringLen SysAllocString SafeArrayCreate CreateErrorInfo SafeArrayGetElement GetActiveObject SysAllocStringLen SafeArrayUnaccessData SafeArrayPtrOfIndex VariantCopy SafeArrayGetUBound SafeArrayGetLBound VariantCopyInd VariantChangeType |
netapi32.dll |
NetWkstaGetInfo
NetUserGetInfo NetApiBufferFree NetUserEnum |
advapi32.dll |
OpenThreadToken
RegUnLoadKeyW RegSaveKeyW EqualSid GetLengthSid RegReplaceKeyW OpenEventLogW GetSidSubAuthority GetTokenInformation LookupAccountSidA LookupAccountSidW RegCreateKeyExW GetSecurityDescriptorDacl SetSecurityDescriptorDacl EnumDependentServicesW RegEnumKeyExW OpenBackupEventLogW AdjustTokenPrivileges GetSecurityDescriptorGroup SetSecurityDescriptorGroup QueryServiceConfigW LookupPrivilegeValueA LookupPrivilegeValueW OpenSCManagerW RegOpenKeyExA RegOpenKeyExW AllocateAndInitializeSid RegDeleteValueW RegFlushKey RegEnumValueW RegQueryValueExA RegQueryValueExW GetKernelObjectSecurity InitializeSecurityDescriptor EnumServicesStatusW CloseServiceHandle RegSetValueExA RegSetValueExW RegConnectRegistryW LookupPrivilegeNameW LookupAccountNameW GetUserNameA GetUserNameW CloseEventLog SetSecurityDescriptorSacl GetSecurityDescriptorSacl RegQueryInfoKeyW IsValidAcl IsValidSid RegOpenKeyA LookupPrivilegeDisplayNameW ReadEventLogW OpenServiceW GetSidSubAuthorityCount RegLoadKeyW QueryServiceStatus SetKernelObjectSecurity GetSidIdentifierAuthority RegDeleteKeyW OpenProcessToken FreeSid RegNotifyChangeKeyValue SetSecurityDescriptorOwner GetSecurityDescriptorOwner RegCloseKey |
msvcrt.dll |
memcpy
memset |
kernel32 |
WTSGetActiveConsoleSessionId
|
kernel32.dll |
GetFileType
GetFileTime GetACP GetExitCodeProcess LocalFree CloseHandle SizeofResource VirtualProtectEx GetSystemDefaultLangID GetCurrentProcessId TerminateThread IsDebuggerPresent FindNextFileW GetFullPathNameW GlobalSize GetCPInfoExW WriteProcessMemory SetFilePointerEx GetTempPathA EnumSystemLocalesW GetTimeZoneInformation FileTimeToLocalFileTime GetVersionExA FreeLibrary HeapDestroy GetUserDefaultLCID FindFirstFileA SetLastError GetModuleFileNameW GetLastError GlobalAlloc GlobalUnlock CompareStringW CreateThread CreateMutexW LoadLibraryA ResetEvent GetVolumeInformationW OpenEventW RaiseException FormatMessageW ReadConsoleOutputCharacterW GetCurrentThread GetLogicalDrives CreateFileMappingA IsBadReadPtr ExpandEnvironmentStringsW GetComputerNameA LoadLibraryExW FileTimeToSystemTime VirtualQuery GlobalFindAtomW VirtualQueryEx Sleep SetFilePointer FlushFileBuffers LoadResource SuspendThread GetTickCount WritePrivateProfileStringW WaitForMultipleObjects OpenFileMappingA GetFileSize GetStartupInfoW GetFileAttributesW VerLanguageNameW GetThreadPriority SetThreadPriority VirtualAlloc AttachConsole GetSystemInfo GetTempPathW LeaveCriticalSection GetVolumePathNamesForVolumeNameW GetLogicalDriveStringsW GetModuleHandleA HeapCreate VerSetConditionMask GetDiskFreeSpaceW GetUserDefaultUILanguage GetConsoleOutputCP GetModuleFileNameA OpenMutexA HeapFree WideCharToMultiByte MultiByteToWideChar FindClose LoadLibraryW SetEvent FreeEnvironmentStringsW OpenEventA GetLocaleInfoW FormatMessageA GetLocalTime WaitForSingleObject GetSystemPowerStatus DeleteCriticalSection SetErrorMode GetComputerNameW SleepEx IsValidLocale VirtualFreeEx LoadLibraryExA GetTickCount64 FindNextVolumeW LocalAlloc GetPrivateProfileStringW WaitForMultipleObjectsEx SetFileAttributesW QueryDosDeviceW GenerateConsoleCtrlEvent VirtualProtect CreateSemaphoreW ReadProcessMemory OpenFileMappingW QueryPerformanceFrequency SetProcessWorkingSetSize SetThreadContext VirtualFree GetThreadContext ExitProcess HeapAlloc GetFileAttributesA RtlUnwind GetCPInfo GetCommandLineA GetStdHandle GetModuleHandleW TryEnterCriticalSection FileTimeToDosDateTime ReadFile CreateProcessW FindResourceW CopyFileW lstrcmpA MapViewOfFile MulDiv CreateFileA GetLocaleInfoA GetSystemDirectoryA GetVersion GetDriveTypeW FreeResource MoveFileW GlobalAddAtomW GetSystemTimeAsFileTime OpenProcess SwitchToThread FindVolumeClose GetExitCodeThread OutputDebugStringW GetFileAttributesExW GlobalMemoryStatusEx SetPriorityClass TerminateProcess LockResource FindFirstVolumeW GetPriorityClass GetCurrentThreadId UnhandledExceptionFilter CreateEventA GlobalFree EnterCriticalSection GetDiskFreeSpaceExW ReleaseMutex GlobalDeleteAtom SetCurrentDirectoryW GetCurrentDirectoryW InitializeCriticalSection GlobalLock GetCurrentProcess GetCommandLineW DuplicateHandle ResumeThread GetProcAddress VirtualAllocEx GetVersionExW VerifyVersionInfoW GetWindowsDirectoryW GetProcessVersion GetEnvironmentStringsW GetProcessAffinityMask DeviceIoControl LCMapStringW FindFirstFileW UnmapViewOfFile GetConsoleCP GlobalHandle lstrlenW QueryPerformanceCounter SetEndOfFile lstrcmpW CreateMutexA SystemTimeToFileTime CreateFileW GetSystemDirectoryW DeleteFileW SetThreadAffinityMask FreeConsole GetEnvironmentVariableW OutputDebugStringA WriteFile FindFirstFileExW CreateFileMappingW ExitThread TlsGetValue GetDateFormatW ExpandEnvironmentStringsA PulseEvent TlsSetValue CreateDirectoryW GetSystemDefaultUILanguage EnumCalendarInfoW GetConsoleScreenBufferInfo RemoveDirectoryW GlobalMemoryStatus CreateEventW SetThreadLocale GetThreadLocale |
wsock32.dll |
WSAStartup
WSACleanup gethostbyname send gethostname |
gdiplus.dll |
GdipFillEllipseI
GdipLoadImageFromStream GdipCreateFont GdipCreateBitmapFromScan0 GdipGetSmoothingMode GdipSetSmoothingMode GdipResetClip GdipFillPath GdipFillRectangle GdipCreateLineBrushFromRect GdipGetImageGraphicsContext GdipDrawString GdipCombineRegionPath GdipAddPathPolygon GdipDeleteFontFamily GdipSetStringFormatLineAlign GdipResetPath GdipAddPathEllipse GdipSetWorldTransform GdipAddPathPie GdipAddPathCurve2I GdipDeleteRegion GdipSetPathGradientWrapMode GdipBitmapGetPixel GdipCreateTexture GdipDrawLine GdipBitmapSetPixel GdipGetPathGradientPointCount GdipSetPathGradientCenterPoint GdipSetPenDashStyle GdipSetLineGammaCorrection GdipCreateHatchBrush GdipDrawPath GdipGetPenFillType GdipDrawRectangle GdipScaleMatrix GdipTranslateMatrix GdipSetTextRenderingHint GdipAddPathLine GdipDeleteStringFormat GdipAddPathString GdipGetImageWidth GdipCreateFromHDC GdipSetImageAttributesColorKeys GdipCreateSolidFill GdipSetStringFormatAlign GdipDeletePath GdipDisposeImageAttributes GdipCreateFontFamilyFromName GdipCreateRegionRect GdipCreateMatrix GdipGetImageRawFormat GdipSetStringFormatTrimming GdiplusShutdown GdipCreateBitmapFromStream GdipLoadImageFromStreamICM GdipCreateStringFormat GdipSetPathGradientCenterPointI GdipDrawArc GdipResetWorldTransform GdipAlloc GdipDeleteMatrix GdipSetClipRegion GdipDrawImageI GdipClosePathFigure GdipAddPathArc GdipCreateLineBrushFromRectWithAngle GdipCreatePath GdipCreatePen2 GdipCreatePen1 GdipSetStringFormatHotkeyPrefix GdipCreatePathGradientFromPath GdipDeletePen GdipRotateMatrix GdipDeleteGraphics GdipCreateBitmapFromStreamICM GdipSetPathGradientCenterColor GdipDeleteFont GdipFree GdipReleaseDC GdipSetStringFormatFlags GdipGetPenBrushFill GdipGetImagePixelFormat GdipGetImageHeight GdipGetDC GdipSetPathGradientSurroundColorsWithCount GdipCreateRegionPath GdipCreateImageAttributes GdiplusStartup GdipDeleteBrush GdipCreateLineBrush GdipSetPathGradientPresetBlend GdipFillPolygon GdipDrawImageRect GdipDrawImageRectRect GdipImageRotateFlip GdipAddPathBezier GdipFillEllipse GdipMeasureString GdipDisposeImage |
gdi32.dll |
Pie
SetPaletteEntries SetBkMode GetRandomRgn CreateCompatibleBitmap CreatePolygonRgn GetEnhMetaFileHeader CloseEnhMetaFile RectVisible AngleArc ResizePalette SetTextColor GetTextColor StretchBlt RoundRect SelectClipRgn RestoreDC SetRectRgn GetTextMetricsW GetWindowOrgEx SetPixelV CreatePalette CreateDCW CreateICW CreatePen PolyBezierTo FillRgn GetStockObject CreateSolidBrush Polygon MoveToEx PlayEnhMetaFile Ellipse GetBitmapBits GetSystemPaletteEntries GetEnhMetaFileBits CreatePenIndirect GetEnhMetaFilePaletteEntries SetMapMode GetMapMode CreateFontIndirectW PolyBezier LPtoDP DPtoLP EndDoc GetObjectW GetCurrentObject GetWinMetaFileBits SetROP2 GetTextExtentExPointW GetEnhMetaFileDescriptionW ArcTo CreateEnhMetaFileW Arc CreateRectRgnIndirect TextOutW SelectPalette ExcludeClipRect MaskBlt SetWindowOrgEx CreatePatternBrush EndPage DeleteEnhMetaFile Chord SetDIBits GetViewportOrgEx SetViewportOrgEx CreateRectRgn RealizePalette SetDIBColorTable GetDIBColorTable GetGlyphOutlineW CreateBrushIndirect PatBlt SetEnhMetaFileBits Rectangle SaveDC DeleteDC BitBlt FrameRgn GetDeviceCaps GetTextExtentPoint32W GetClipBox IntersectClipRect Polyline CreateBitmap CombineRgn SetWinMetaFileBits CreateDIBitmap GetStretchBltMode CreateDIBSection SetStretchBltMode GetDIBits LineTo GetRgnBox EnumFontsW CreateHalftonePalette SelectObject DeleteObject ExtFloodFill UnrealizeObject CopyEnhMetaFileW OffsetRgn SetBkColor GetBkColor CreateCompatibleDC GetBrushOrgEx GetCurrentPositionEx SetDCPenColor GetNearestPaletteIndex CreateRoundRectRgn GetTextExtentPointW ExtTextOutW SetBrushOrgEx GetPixel GdiFlush SetPixel EnumFontFamiliesExW StretchDIBits GetPaletteEntries |
mpr.dll |
WNetGetConnectionW
|
winmm.dll |
sndPlaySoundW
timeGetTime |
oleacc.dll |
LresultFromObject
|
winspool.drv |
DocumentPropertiesW
ClosePrinter OpenPrinterW OpenPrinterA GetPrinterW GetPrinterA SetPrinterA GetDefaultPrinterW EnumPrintersW |
comdlg32.dll |
ChooseColorW
GetSaveFileNameW GetOpenFileNameW |
msimg32.dll |
GradientFill
|
comctl32.dll |
FlatSB_SetScrollInfo
InitCommonControls ImageList_DragMove ImageList_Destroy _TrackMouseEvent ImageList_DragShowNolock ImageList_Add ImageList_GetDragImage FlatSB_SetScrollProp ImageList_Create ImageList_EndDrag ImageList_DrawEx ImageList_SetImageCount FlatSB_GetScrollPos FlatSB_SetScrollPos InitializeFlatSB ImageList_Copy FlatSB_GetScrollInfo ImageList_Write ImageList_DrawIndirect ImageList_SetBkColor ImageList_GetBkColor ImageList_BeginDrag ImageList_GetIcon ImageList_Replace ImageList_GetImageCount ImageList_DragEnter ImageList_GetIconSize ImageList_SetIconSize ImageList_Read ImageList_DragLeave ImageList_Draw ImageList_Remove ImageList_ReplaceIcon ImageList_SetOverlayImage |
shell32.dll |
SHBrowseForFolderW
DragAcceptFiles SHGetFileInfoW SHGetFileInfoA SHGetDesktopFolder SHChangeNotify SHFileOperationW SHFileOperationA ShellExecuteW ExtractIconExW ExtractIconExA ExtractAssociatedIconW DragQueryFileW SHGetSpecialFolderLocation Shell_NotifyIconW ShellExecuteExW SHGetPathFromIDListA SHGetPathFromIDListW ExtractIconW DragFinish SHEmptyRecycleBinW SHGetMalloc SHQueryRecycleBinW #62 |
IMAGEHLP.DLL |
SymGetSymFromAddr
SymSetOptions SymUnloadModule SymInitialize SymCleanup SymLoadModule |
ash_inet2.dll |
ainet_InitRegistrationManager
ainet_SetProductVersion ainet_Destroy ainet_GetMenuItemsText ainet_InitAnalyticsManager ainet_RegistrationManagerGetTrialDaysLeft ainet_RegistrationManagerHasExpired ainet_SetProductID ainet_StartInfoChannelsConfig ainet_AnalyticsManagerAddFeature ainet_ProcessMenuItem ainet_SetProductLang ainet_SetRegisterRegistryKey ainet_GetMenuItemsImage ainet_GetMenuItemsCount ainet_SetUserRegistryKey ainet_StartAllChecks ainet_SetProductName ainet_RegistrationManagerIsTrialPeriodExtended ainet_RegistrationManagerIsFullVersion ainet_RegistrationManagerGetKey ainet_GetMenuItemsID ainet_Shutdown ainet_StartAnalyticsConfig ainet_OpenLinkTargetInBrowser ainet_SetRegistryKey ainet_FreeWideString ainet_SetSystemRegistryKey ainet_ProblemReportSend ainet_Init ainet_SetBaseFolder |
ole32.dll |
CreateDataAdviseHolder
CreateBindCtx StgCreateDocfile MkParseDisplayName CoCreateInstance OleGetClipboard CLSIDFromString OleSetClipboard IsEqualGUID CreateStreamOnHGlobal PropVariantClear GetHGlobalFromStream CoGetClassObject CoInitialize OleDraw CoTaskMemAlloc DoDragDrop StringFromCLSID RevokeDragDrop IsAccelerator CoUninitialize ReleaseStgMedium RegisterDragDrop StgOpenStorage OleInitialize ProgIDFromCLSID CoInitializeEx OleUninitialize CoDisconnectObject StgIsStorageFile CoInitializeSecurity CoTaskMemFree OleSetMenuDescriptor |
msacm32.dll |
acmDriverDetailsW
acmDriverEnum |
ntdll.dll |
RtlGetVersion
|
kernel32.dll (delay-loaded) |
GetFileType
GetFileTime GetACP GetExitCodeProcess LocalFree CloseHandle SizeofResource VirtualProtectEx GetSystemDefaultLangID GetCurrentProcessId TerminateThread IsDebuggerPresent FindNextFileW GetFullPathNameW GlobalSize GetCPInfoExW WriteProcessMemory SetFilePointerEx GetTempPathA EnumSystemLocalesW GetTimeZoneInformation FileTimeToLocalFileTime GetVersionExA FreeLibrary HeapDestroy GetUserDefaultLCID FindFirstFileA SetLastError GetModuleFileNameW GetLastError GlobalAlloc GlobalUnlock CompareStringW CreateThread CreateMutexW LoadLibraryA ResetEvent GetVolumeInformationW OpenEventW RaiseException FormatMessageW ReadConsoleOutputCharacterW GetCurrentThread GetLogicalDrives CreateFileMappingA IsBadReadPtr ExpandEnvironmentStringsW GetComputerNameA LoadLibraryExW FileTimeToSystemTime VirtualQuery GlobalFindAtomW VirtualQueryEx Sleep SetFilePointer FlushFileBuffers LoadResource SuspendThread GetTickCount WritePrivateProfileStringW WaitForMultipleObjects OpenFileMappingA GetFileSize GetStartupInfoW GetFileAttributesW VerLanguageNameW GetThreadPriority SetThreadPriority VirtualAlloc AttachConsole GetSystemInfo GetTempPathW LeaveCriticalSection GetVolumePathNamesForVolumeNameW GetLogicalDriveStringsW GetModuleHandleA HeapCreate VerSetConditionMask GetDiskFreeSpaceW GetUserDefaultUILanguage GetConsoleOutputCP GetModuleFileNameA OpenMutexA HeapFree WideCharToMultiByte MultiByteToWideChar FindClose LoadLibraryW SetEvent FreeEnvironmentStringsW OpenEventA GetLocaleInfoW FormatMessageA GetLocalTime WaitForSingleObject GetSystemPowerStatus DeleteCriticalSection SetErrorMode GetComputerNameW SleepEx IsValidLocale VirtualFreeEx LoadLibraryExA GetTickCount64 FindNextVolumeW LocalAlloc GetPrivateProfileStringW WaitForMultipleObjectsEx SetFileAttributesW QueryDosDeviceW GenerateConsoleCtrlEvent VirtualProtect CreateSemaphoreW ReadProcessMemory OpenFileMappingW QueryPerformanceFrequency SetProcessWorkingSetSize SetThreadContext VirtualFree GetThreadContext ExitProcess HeapAlloc GetFileAttributesA RtlUnwind GetCPInfo GetCommandLineA GetStdHandle GetModuleHandleW TryEnterCriticalSection FileTimeToDosDateTime ReadFile CreateProcessW FindResourceW CopyFileW lstrcmpA MapViewOfFile MulDiv CreateFileA GetLocaleInfoA GetSystemDirectoryA GetVersion GetDriveTypeW FreeResource MoveFileW GlobalAddAtomW GetSystemTimeAsFileTime OpenProcess SwitchToThread FindVolumeClose GetExitCodeThread OutputDebugStringW GetFileAttributesExW GlobalMemoryStatusEx SetPriorityClass TerminateProcess LockResource FindFirstVolumeW GetPriorityClass GetCurrentThreadId UnhandledExceptionFilter CreateEventA GlobalFree EnterCriticalSection GetDiskFreeSpaceExW ReleaseMutex GlobalDeleteAtom SetCurrentDirectoryW GetCurrentDirectoryW InitializeCriticalSection GlobalLock GetCurrentProcess GetCommandLineW DuplicateHandle ResumeThread GetProcAddress VirtualAllocEx GetVersionExW VerifyVersionInfoW GetWindowsDirectoryW GetProcessVersion GetEnvironmentStringsW GetProcessAffinityMask DeviceIoControl LCMapStringW FindFirstFileW UnmapViewOfFile GetConsoleCP GlobalHandle lstrlenW QueryPerformanceCounter SetEndOfFile lstrcmpW CreateMutexA SystemTimeToFileTime CreateFileW GetSystemDirectoryW DeleteFileW SetThreadAffinityMask FreeConsole GetEnvironmentVariableW OutputDebugStringA WriteFile FindFirstFileExW CreateFileMappingW ExitThread TlsGetValue GetDateFormatW ExpandEnvironmentStringsA PulseEvent TlsSetValue CreateDirectoryW GetSystemDefaultUILanguage EnumCalendarInfoW GetConsoleScreenBufferInfo RemoveDirectoryW GlobalMemoryStatus CreateEventW SetThreadLocale GetThreadLocale |
Attributes | 0x1 |
---|---|
Name | kernel32.dll |
ModuleHandle | 0x7b3220 |
DelayImportAddressTable | 0x7b3264 |
DelayImportNameTable | 0x7b33f0 |
BoundDelayImportTable | 0x7b357c |
UnloadDelayImportTable | 0x7b36c8 |
TimeStamp | 1970-Jan-01 00:00:00 |
Ordinal | 1 |
---|---|
Address | 0x781630 |
Ordinal | 2 |
---|---|
Address | 0x10850 |
Ordinal | 3 |
---|---|
Address | 0x659f8 |