PEInfo: PE Structure information
( base data )
entrypointaddress.: 0x10017240
timedatestamp.....: 0x48b39955 (Tue Aug 26 05:49:09 2008)
machinetype.......: 0x14c (I386)
( 5 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0x20aa3 0x21000 6.61 da30b84abe7fd2333b78ad6731a55194
.rdata 0x22000 0x602d 0x7000 4.81 ce8aed7515e8a14fd60dd2f5711d03d9
.data 0x29000 0x2f68 0x2000 2.69 8933fc11e9e8d7dd5b22248e3d19a744
.rsrc 0x2c000 0xee0 0x1000 3.91 56c2e64abf7e40c8b832912b03088b45
.reloc 0x2d000 0x2a44 0x3000 5.02 7c21eefcda674f6a2c515ea94e3c7253
( 9 imports )
> WS2_32.dll: -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -
> WININET.dll: InternetCloseHandle, InternetOpenA, InternetCanonicalizeUrlA, InternetGetCookieA, InternetSetCookieA, InternetReadFile, HttpQueryInfoA, InternetOpenUrlA
> KERNEL32.dll: IsBadCodePtr, IsBadReadPtr, LoadLibraryA, GetStringTypeW, GetStringTypeA, GetEnvironmentStringsW, FreeEnvironmentStringsW, GetEnvironmentStrings, FreeEnvironmentStringsA, GetStartupInfoA, GetFileType, GetStdHandle, SetHandleCount, GetTimeZoneInformation, UnhandledExceptionFilter, SetUnhandledExceptionFilter, InterlockedExchange, GetACP, GetLocaleInfoA, GetThreadLocale, GetVersionExA, MultiByteToWideChar, WideCharToMultiByte, RaiseException, EnterCriticalSection, LeaveCriticalSection, InitializeCriticalSection, DeleteCriticalSection, SizeofResource, LockResource, LoadResource, FindResourceA, FindResourceExA, GetLastError, lstrlenA, GetTickCount, SetEvent, WaitForSingleObject, CloseHandle, CreateProcessA, lstrcatA, GetShortPathNameA, GetModuleFileNameA, lstrcmpiA, lstrlenW, lstrcpyA, GetModuleHandleA, lstrcpynA, InterlockedIncrement, InterlockedDecrement, IsDBCSLeadByte, GetPrivateProfileStringA, GetPrivateProfileIntA, ResumeThread, ResetEvent, ReleaseMutex, CreateMutexA, WaitForMultipleObjects, CreateEventA, TerminateThread, HeapFree, WriteFile, HeapAlloc, GetProcessHeap, CreateFileA, DeleteFileA, CreateThread, MoveFileA, ReadFile, GetTempFileNameA, GetTempPathA, FreeLibrary, LoadLibraryExA, ExitProcess, Sleep, CompareStringA, CompareStringW, TlsSetValue, TlsFree, SetLastError, TlsAlloc, GetCPInfo, GetOEMCP, GetCommandLineA, GetSystemTimeAsFileTime, GetCurrentThreadId, ExitThread, RtlUnwind, VirtualQuery, GetSystemInfo, VirtualAlloc, VirtualProtect, HeapSize, HeapReAlloc, HeapDestroy, GetProcAddress, SetFilePointer, SetStdHandle, FlushFileBuffers, GetLocalTime, SetEnvironmentVariableA, LCMapStringA, LCMapStringW, GetCurrentProcessId, QueryPerformanceCounter, GetCurrentProcess, TerminateProcess, IsBadWritePtr, VirtualFree, HeapCreate, TlsGetValue
> USER32.dll: SetWindowPos, SendMessageA, PostMessageA, EnumChildWindows, GetDesktopWindow, GetClassNameA, GetMessageA, TranslateMessage, DispatchMessageA, SystemParametersInfoA, GetForegroundWindow, CharNextA, wsprintfA, GetParent
> ADVAPI32.dll: RegEnumValueA, RegEnumKeyExA, RegSetValueExA, RegQueryValueExA, RegOpenKeyExA, RegCreateKeyExA, RegCloseKey, RegDeleteValueA, RegDeleteKeyA, RegQueryInfoKeyA
> SHELL32.dll: SHGetFileInfoA
> ole32.dll: CoTaskMemFree, StringFromCLSID, CLSIDFromString, StringFromGUID2, CoCreateGuid, CoUninitialize, CoCreateInstance, CoInitialize, CoTaskMemAlloc, CoTaskMemRealloc
> OLEAUT32.dll: -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -
> SHLWAPI.dll: PathFindExtensionA
( 6 exports )
DllCanUnloadNow, DllGetClassObject, DllMain, DllRegisterServer, DllUnregisterServer, _EntryPoint@16
|