Windows
Analysis Report
ArchivePlayer.exe
Overview
General Information
Detection
Score: | 29 |
Range: | 0 - 100 |
Whitelisted: | false |
Confidence: | 60% |
Signatures
Classification
Analysis Advice
Sample has a GUI, but Joe Sandbox has not found any clickable buttons, likely more UI automation may extend behavior |
Sample tries to load a library which is not present or installed on the analysis machine, adding the library might reveal more behavior |
- System is w10x64
- ArchivePlayer.exe (PID: 2408 cmdline:
"C:\Users\ user\Deskt op\Archive Player.exe " MD5: 9FC7930A0E24916B1F136C2EC0832CA8)
- cleanup
Click to jump to signature section
Source: | Code function: | 0_2_005E9C00 |
Source: | Static PE information: |
Source: | Binary string: | ||
Source: | Binary string: |
Source: | Code function: | 0_2_008163F1 | |
Source: | Code function: | 0_2_0081D90B | |
Source: | Code function: | 0_2_007BF980 |
Source: | Code function: | 0_2_007A42A0 |
Source: | String found in binary or memory: |
Source: | Code function: | 0_2_007CA6F0 |
Source: | Code function: | 0_2_00796030 | |
Source: | Code function: | 0_2_007AA010 | |
Source: | Code function: | 0_2_007F6010 | |
Source: | Code function: | 0_2_007EC0F0 | |
Source: | Code function: | 0_2_007FA0B0 | |
Source: | Code function: | 0_2_007F8080 | |
Source: | Code function: | 0_2_007B6160 | |
Source: | Code function: | 0_2_007DE100 | |
Source: | Code function: | 0_2_00798230 | |
Source: | Code function: | 0_2_0077E2F0 | |
Source: | Code function: | 0_2_007F0290 | |
Source: | Code function: | 0_2_0096C314 | |
Source: | Code function: | 0_2_007A03D0 | |
Source: | Code function: | 0_2_008144D5 | |
Source: | Code function: | 0_2_007C84B0 | |
Source: | Code function: | 0_2_007EA490 | |
Source: | Code function: | 0_2_00418550 | |
Source: | Code function: | 0_2_0093855B | |
Source: | Code function: | 0_2_007F65A0 | |
Source: | Code function: | 0_2_007CA6F0 | |
Source: | Code function: | 0_2_00974672 | |
Source: | Code function: | 0_2_0078C690 | |
Source: | Code function: | 0_2_007B8680 | |
Source: | Code function: | 0_2_0074E750 | |
Source: | Code function: | 0_2_0092A700 | |
Source: | Code function: | 0_2_007C87A0 | |
Source: | Code function: | 0_2_007DA7A0 | |
Source: | Code function: | 0_2_0079E840 | |
Source: | Code function: | 0_2_009548E0 | |
Source: | Code function: | 0_2_007A28D0 | |
Source: | Code function: | 0_2_007A88B0 | |
Source: | Code function: | 0_2_0077A9C0 | |
Source: | Code function: | 0_2_0093A970 | |
Source: | Code function: | 0_2_00418B70 | |
Source: | Code function: | 0_2_007FAB30 | |
Source: | Code function: | 0_2_00780BE0 | |
Source: | Code function: | 0_2_006CCBD0 | |
Source: | Code function: | 0_2_007E4CF0 | |
Source: | Code function: | 0_2_007E6CF0 | |
Source: | Code function: | 0_2_007B8F10 | |
Source: | Code function: | 0_2_007A3060 | |
Source: | Code function: | 0_2_00425020 | |
Source: | Code function: | 0_2_007E7000 | |
Source: | Code function: | 0_2_0094506D | |
Source: | Code function: | 0_2_007F72E0 | |
Source: | Code function: | 0_2_004192E0 | |
Source: | Code function: | 0_2_0093F40D | |
Source: | Code function: | 0_2_007A3520 | |
Source: | Code function: | 0_2_0094B680 | |
Source: | Code function: | 0_2_00785730 | |
Source: | Code function: | 0_2_007E1700 | |
Source: | Code function: | 0_2_007A97C0 | |
Source: | Code function: | 0_2_007F7860 | |
Source: | Code function: | 0_2_00857846 | |
Source: | Code function: | 0_2_007B5930 | |
Source: | Code function: | 0_2_0084B9D2 | |
Source: | Code function: | 0_2_0070DA40 | |
Source: | Code function: | 0_2_007A1A00 | |
Source: | Code function: | 0_2_00977B04 | |
Source: | Code function: | 0_2_00945B51 | |
Source: | Code function: | 0_2_0093BCA5 | |
Source: | Code function: | 0_2_005E9C00 | |
Source: | Code function: | 0_2_00955CE0 | |
Source: | Code function: | 0_2_00973C05 | |
Source: | Code function: | 0_2_007ABC90 | |
Source: | Code function: | 0_2_0092FC6E | |
Source: | Code function: | 0_2_00949DF0 |
Source: | Binary or memory string: |
Source: | Static PE information: |
Source: | Classification label: |
Source: | Code function: | 0_2_008140DB |
Source: | Code function: | 0_2_0080ADE2 |
Source: | Key opened: | Jump to behavior |
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior |
Source: | Window detected: |
Source: | Static PE information: |
Source: | Static PE information: |
Source: | Static file information: |
Source: | Static PE information: | ||
Source: | Static PE information: |
Source: | Static PE information: |
Source: | Static PE information: |
Source: | Binary string: | ||
Source: | Binary string: |
Source: | Code function: | 0_2_007F4460 |
Source: | Static PE information: | ||
Source: | Static PE information: | ||
Source: | Static PE information: |
Source: | Code function: | 0_2_0092F6E2 | |
Source: | Code function: | 0_2_0092F838 | |
Source: | Code function: | 0_2_0070BD2F |
Source: | Code function: | 0_2_007C99C0 |
Source: | Code function: | 0_2_007F4460 |
Source: | Process information set: | Jump to behavior |
Source: | Code function: | 0_2_007ED160 |
Source: | API coverage: |
Source: | Code function: | 0_2_008163F1 | |
Source: | Code function: | 0_2_0081D90B | |
Source: | Code function: | 0_2_007BF980 |
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: |
Source: | API call chain: | graph_0-76219 |
Anti Debugging |
---|
Source: | Code function: | 0_2_005E9C00 |
Source: | Code function: | 0_2_007ED160 |
Source: | Code function: | 0_2_0092A4DF |
Source: | Code function: | 0_2_0080999F |
Source: | Code function: | 0_2_007F4460 |
Source: | Code function: | 0_2_00948514 |
Source: | Code function: | 0_2_009352BB |
Source: | Code function: | 0_2_005E9900 |
Source: | Code function: | 0_2_0092CB13 |
Source: | Code function: | 0_2_0092CDB1 |
Source: | Code function: | 0_2_008140DB |
Source: | Code function: | 0_2_007A03D0 | |
Source: | Code function: | 0_2_007B4540 | |
Source: | Code function: | 0_2_007B4860 | |
Source: | Code function: | 0_2_007BAA00 | |
Source: | Code function: | 0_2_007BAB50 |
Reconnaissance | Resource Development | Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Command and Control | Exfiltration | Impact |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Gather Victim Identity Information | Acquire Infrastructure | Valid Accounts | 1 Native API | 1 DLL Side-Loading | 1 DLL Side-Loading | 1 Deobfuscate/Decode Files or Information | OS Credential Dumping | 2 System Time Discovery | Remote Services | 1 Screen Capture | 2 Encrypted Channel | Exfiltration Over Other Network Medium | Abuse Accessibility Features |
Credentials | Domains | Default Accounts | Scheduled Task/Job | Boot or Logon Initialization Scripts | Boot or Logon Initialization Scripts | 2 Obfuscated Files or Information | LSASS Memory | 41 Security Software Discovery | Remote Desktop Protocol | 1 Archive Collected Data | 1 Ingress Tool Transfer | Exfiltration Over Bluetooth | Network Denial of Service |
Email Addresses | DNS Server | Domain Accounts | At | Logon Script (Windows) | Logon Script (Windows) | 1 DLL Side-Loading | Security Account Manager | 1 Application Window Discovery | SMB/Windows Admin Shares | Data from Network Shared Drive | Steganography | Automated Exfiltration | Data Encrypted for Impact |
Employee Names | Virtual Private Server | Local Accounts | Cron | Login Hook | Login Hook | Binary Padding | NTDS | 1 File and Directory Discovery | Distributed Component Object Model | Input Capture | Protocol Impersonation | Traffic Duplication | Data Destruction |
Gather Victim Network Information | Server | Cloud Accounts | Launchd | Network Logon Script | Network Logon Script | Software Packing | LSA Secrets | 13 System Information Discovery | SSH | Keylogging | Fallback Channels | Scheduled Transfer | Data Encrypted for Impact |
This section contains all screenshots as thumbnails, including those not shown in the slideshow.
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
2% | ReversingLabs |
Name | Source | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|
false | low |
Joe Sandbox version: | 40.0.0 Tourmaline |
Analysis ID: | 1428280 |
Start date and time: | 2024-04-18 18:58:59 +02:00 |
Joe Sandbox product: | CloudBasic |
Overall analysis duration: | 0h 5m 35s |
Hypervisor based Inspection enabled: | false |
Report type: | full |
Cookbook file name: | default.jbs |
Analysis system description: | Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01 |
Number of analysed new started processes analysed: | 4 |
Number of new started drivers analysed: | 0 |
Number of existing processes analysed: | 0 |
Number of existing drivers analysed: | 0 |
Number of injected processes analysed: | 0 |
Technologies: |
|
Analysis Mode: | default |
Analysis stop reason: | Timeout |
Sample name: | ArchivePlayer.exe |
Detection: | SUS |
Classification: | sus29.evad.winEXE@1/0@0/0 |
EGA Information: |
|
HCA Information: |
|
Cookbook Comments: |
|
- Exclude process from analysis (whitelisted): dllhost.exe, WMIADAP.exe, SIHClient.exe
- Excluded domains from analysis (whitelisted): ocsp.digicert.com, slscr.update.microsoft.com, ctldl.windowsupdate.com, fe3cr.delivery.mp.microsoft.com
- Report size exceeded maximum capacity and may have missing disassembly code.
- VT rate limit hit for: ArchivePlayer.exe
File type: | |
Entropy (8bit): | 6.748383314638453 |
TrID: |
|
File name: | ArchivePlayer.exe |
File size: | 7'742'976 bytes |
MD5: | 9fc7930a0e24916b1f136c2ec0832ca8 |
SHA1: | ad64c6eb86d06729f5657e9e97d12bac096b0f1e |
SHA256: | 527b331af189dd4fb9d2e9049ec002dbb5ad4a3b6da9bd06b38d80f1fc911f6c |
SHA512: | bd16e10424366008f97e54e6b819d82465e0bf640c55239c65359120d5dcc90586a5f1267d64d0d2384872286296cab0b077ede68b895a71d4f28a84bb89bf8d |
SSDEEP: | 196608:VQeJEEccgNWMh66h6t/1meZTbPI5qv+SG5/OofY:zjxU0ofY |
TLSH: | F876AE80F6C381F5CC030930542FF76F67395A198634CAE7EB942B1EFDB2692553A25A |
File Content Preview: | MZ......................@...................................0...........!..L.!This program cannot be run in DOS mode....$.......................&V......&V......&V......e.........#...............".&.....#...............'.........v...&V........#............ |
Icon Hash: | 496d4b5906554327 |
Entrypoint: | 0x92c347 |
Entrypoint Section: | .text |
Digitally signed: | false |
Imagebase: | 0x400000 |
Subsystem: | windows gui |
Image File Characteristics: | RELOCS_STRIPPED, EXECUTABLE_IMAGE, 32BIT_MACHINE |
DLL Characteristics: | NX_COMPAT, TERMINAL_SERVER_AWARE |
Time Stamp: | 0x58DB5C7B [Wed Mar 29 07:04:27 2017 UTC] |
TLS Callbacks: | |
CLR (.Net) Version: | |
OS Version Major: | 6 |
OS Version Minor: | 0 |
File Version Major: | 6 |
File Version Minor: | 0 |
Subsystem Version Major: | 6 |
Subsystem Version Minor: | 0 |
Import Hash: | 83224c19972cbd9bfe9d13c53ab5af9a |
Instruction |
---|
call 00007FD2786DF5E2h |
jmp 00007FD2786D1A15h |
push 00000014h |
push 00B067A0h |
call 00007FD2786D4E98h |
call 00007FD2786DA606h |
movzx esi, ax |
push 00000002h |
call 00007FD2786DF575h |
pop ecx |
mov eax, 00005A4Dh |
cmp word ptr [00400000h], ax |
je 00007FD2786D1A16h |
xor ebx, ebx |
jmp 00007FD2786D1A45h |
mov eax, dword ptr [0040003Ch] |
cmp dword ptr [eax+00400000h], 00004550h |
jne 00007FD2786D19FDh |
mov ecx, 0000010Bh |
cmp word ptr [eax+00400018h], cx |
jne 00007FD2786D19EFh |
xor ebx, ebx |
cmp dword ptr [eax+00400074h], 0Eh |
jbe 00007FD2786D1A1Bh |
cmp dword ptr [eax+004000E8h], ebx |
setne bl |
mov dword ptr [ebp-1Ch], ebx |
call 00007FD2786DD285h |
test eax, eax |
jne 00007FD2786D1A1Ah |
push 0000001Ch |
call 00007FD2786D1AF1h |
pop ecx |
call 00007FD2786D94C8h |
test eax, eax |
jne 00007FD2786D1A1Ah |
push 00000010h |
call 00007FD2786D1AE0h |
pop ecx |
call 00007FD2786DF5EEh |
and dword ptr [ebp-04h], 00000000h |
call 00007FD2786DEF38h |
test eax, eax |
jns 00007FD2786D1A1Ah |
push 0000001Bh |
call 00007FD2786D1AC6h |
pop ecx |
call dword ptr [0098D498h] |
mov dword ptr [00C0DA3Ch], eax |
call 00007FD2786DF609h |
mov dword ptr [00B40B24h], eax |
call 00007FD2786DF1C6h |
test eax, eax |
jns 00007FD2786D1A1Ah |
Programming Language: |
|
Name | Virtual Address | Virtual Size | Is in Section |
---|---|---|---|
IMAGE_DIRECTORY_ENTRY_EXPORT | 0x707150 | 0x2a8c | .rdata |
IMAGE_DIRECTORY_ENTRY_IMPORT | 0x709bdc | 0x1a4 | .rdata |
IMAGE_DIRECTORY_ENTRY_RESOURCE | 0x810000 | 0x274b8 | .rsrc |
IMAGE_DIRECTORY_ENTRY_EXCEPTION | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_SECURITY | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_BASERELOC | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_DEBUG | 0x58dea0 | 0x38 | .rdata |
IMAGE_DIRECTORY_ENTRY_COPYRIGHT | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_GLOBALPTR | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_TLS | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_LOAD_CONFIG | 0x6e8070 | 0x40 | .rdata |
IMAGE_DIRECTORY_ENTRY_BOUND_IMPORT | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_IAT | 0x58d000 | 0xb8c | .rdata |
IMAGE_DIRECTORY_ENTRY_DELAY_IMPORT | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_COM_DESCRIPTOR | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_RESERVED | 0x0 | 0x0 |
Name | Virtual Address | Virtual Size | Raw Size | MD5 | Xored PE | ZLIB Complexity | File Type | Entropy | Characteristics |
---|---|---|---|---|---|---|---|---|---|
.text | 0x1000 | 0x56affc | 0x56b000 | 6b21ee9c40c44ef27cb50cbaadaf9a6b | unknown | unknown | unknown | unknown | IMAGE_SCN_CNT_CODE, IMAGE_SCN_MEM_EXECUTE, IMAGE_SCN_MEM_READ |
.text.un | 0x56c000 | 0x2094c | 0x20a00 | 2b425bdc812bd24c2ee8fa4b02e33eb7 | False | 0.45438966714559387 | data | 6.134719709842019 | IMAGE_SCN_CNT_CODE, IMAGE_SCN_MEM_EXECUTE, IMAGE_SCN_MEM_READ |
.rdata | 0x58d000 | 0x1809c6 | 0x180a00 | e8581d6701e04ef54c976828620c35b3 | False | 0.5601349224081899 | data | 6.869654698291933 | IMAGE_SCN_CNT_INITIALIZED_DATA, IMAGE_SCN_MEM_READ |
.data | 0x70e000 | 0xffa40 | 0x2d200 | 2f265fed23ce24c68522cc081f8ff400 | False | 0.07713491170360111 | data | 3.5209762676968777 | IMAGE_SCN_CNT_INITIALIZED_DATA, IMAGE_SCN_MEM_READ, IMAGE_SCN_MEM_WRITE |
.drectve | 0x80e000 | 0x5d4 | 0x600 | 22bad3bf562c2a05101e4c427848d34d | False | 0.24283854166666666 | data | 4.8868926459910575 | IMAGE_SCN_CNT_INITIALIZED_DATA, IMAGE_SCN_MEM_READ, IMAGE_SCN_MEM_WRITE |
.rodata | 0x80f000 | 0xf40 | 0x1000 | d5849f7c4b3b0b410741d8ec6d5524c2 | False | 0.341064453125 | data | 5.163558006475463 | IMAGE_SCN_CNT_INITIALIZED_DATA, IMAGE_SCN_MEM_READ |
.rsrc | 0x810000 | 0x274b8 | 0x27600 | 9c50bd2918990215311069673e86fa2e | False | 0.3013268849206349 | data | 4.693155961819127 | IMAGE_SCN_CNT_INITIALIZED_DATA, IMAGE_SCN_MEM_READ |
Name | RVA | Size | Type | Language | Country | ZLIB Complexity |
---|---|---|---|---|---|---|
RT_CURSOR | 0x833e10 | 0x134 | Targa image data - RGB 64 x 65536 x 1 +32 "\001" | Chinese | Taiwan | 0.4805194805194805 |
RT_CURSOR | 0x833f48 | 0xb4 | Targa image data - Map 32 x 65536 x 1 +16 "\001" | Chinese | Taiwan | 0.7 |
RT_CURSOR | 0x834028 | 0x134 | AmigaOS bitmap font "(", fc_YSize 4294967264, 5120 elements, 2nd "\377\360?\377\377\370\177\377\377\374\377\377\377\377\377\377\377\377\377\377\377\377\377\377\377\377\377\377\377\377\377\377\377\377\377\377\377\377\377\377\377\377\377\377", 3rd | Chinese | Taiwan | 0.36363636363636365 |
RT_CURSOR | 0x834178 | 0x134 | Targa image data - RLE 64 x 65536 x 1 +32 "\001" | Chinese | Taiwan | 0.35714285714285715 |
RT_CURSOR | 0x8342c8 | 0x134 | data | Chinese | Taiwan | 0.37337662337662336 |
RT_CURSOR | 0x834418 | 0x134 | data | Chinese | Taiwan | 0.37662337662337664 |
RT_CURSOR | 0x834568 | 0x134 | Targa image data 64 x 65536 x 1 +32 "\001" | Chinese | Taiwan | 0.36688311688311687 |
RT_CURSOR | 0x8346b8 | 0x134 | Targa image data 64 x 65536 x 1 +32 "\001" | Chinese | Taiwan | 0.37662337662337664 |
RT_CURSOR | 0x834808 | 0x134 | Targa image data - Mono - RLE 64 x 65536 x 1 +32 "\001" | Chinese | Taiwan | 0.36688311688311687 |
RT_CURSOR | 0x834958 | 0x134 | Targa image data - RGB - RLE 64 x 65536 x 1 +32 "\001" | Chinese | Taiwan | 0.38636363636363635 |
RT_CURSOR | 0x834aa8 | 0x134 | data | Chinese | Taiwan | 0.44155844155844154 |
RT_CURSOR | 0x834bf8 | 0x134 | data | Chinese | Taiwan | 0.4155844155844156 |
RT_CURSOR | 0x834d48 | 0x134 | AmigaOS bitmap font "(", fc_YSize 4294966847, 3840 elements, 2nd "\377?\374\377\377\300\003\377\377\300\003\377\377\340\007\377\377\360\017\377\377\370\037\377\377\374?\377\377\376\177\377\377\377\377\377\377\377\377\377\377\377\377\377", 3rd | Chinese | Taiwan | 0.5422077922077922 |
RT_CURSOR | 0x834e98 | 0x134 | data | Chinese | Taiwan | 0.2662337662337662 |
RT_CURSOR | 0x834fe8 | 0x134 | data | Chinese | Taiwan | 0.2824675324675325 |
RT_CURSOR | 0x835138 | 0x134 | data | Chinese | Taiwan | 0.3246753246753247 |
RT_BITMAP | 0x8353a8 | 0xb8 | Device independent bitmap graphic, 12 x 10 x 4, image size 80 | Chinese | Taiwan | 0.44565217391304346 |
RT_BITMAP | 0x835460 | 0x144 | Device independent bitmap graphic, 33 x 11 x 4, image size 220 | Chinese | Taiwan | 0.37962962962962965 |
RT_ICON | 0x810c60 | 0x468 | Device independent bitmap graphic, 16 x 32 x 32, image size 1024 | Chinese | Taiwan | 0.6303191489361702 |
RT_ICON | 0x8110c8 | 0x988 | Device independent bitmap graphic, 24 x 48 x 32, image size 2304 | Chinese | Taiwan | 0.5409836065573771 |
RT_ICON | 0x811a50 | 0x10a8 | Device independent bitmap graphic, 32 x 64 x 32, image size 4096 | Chinese | Taiwan | 0.49882739212007504 |
RT_ICON | 0x812af8 | 0x25a8 | Device independent bitmap graphic, 48 x 96 x 32, image size 9216 | Chinese | Taiwan | 0.4299792531120332 |
RT_ICON | 0x8150a0 | 0x4228 | Device independent bitmap graphic, 64 x 128 x 32, image size 16384 | Chinese | Taiwan | 0.38704534718941896 |
RT_ICON | 0x8192c8 | 0x94a8 | Device independent bitmap graphic, 96 x 192 x 32, image size 36864 | Chinese | Taiwan | 0.3360573891107841 |
RT_ICON | 0x822770 | 0x10828 | Device independent bitmap graphic, 128 x 256 x 32, image size 65536 | Chinese | Taiwan | 0.2294451673961907 |
RT_DIALOG | 0x833000 | 0x140 | data | Chinese | Taiwan | 0.58125 |
RT_DIALOG | 0x833140 | 0xab8 | data | Chinese | Taiwan | 0.37900874635568516 |
RT_DIALOG | 0x835288 | 0xe8 | data | Chinese | Taiwan | 0.6336206896551724 |
RT_DIALOG | 0x835370 | 0x34 | data | Chinese | Taiwan | 0.9038461538461539 |
RT_STRING | 0x8355a8 | 0x68 | data | Chinese | Taiwan | 0.8173076923076923 |
RT_STRING | 0x835610 | 0x82 | StarOffice Gallery theme p, 536899072 objects, 1st n | Chinese | Taiwan | 0.7153846153846154 |
RT_STRING | 0x835698 | 0x2a | data | Chinese | Taiwan | 0.5476190476190477 |
RT_STRING | 0x8356c8 | 0x184 | data | Chinese | Taiwan | 0.48711340206185566 |
RT_STRING | 0x835850 | 0x4e6 | data | Chinese | Taiwan | 0.37719298245614036 |
RT_STRING | 0x8360c8 | 0x264 | data | Chinese | Taiwan | 0.3333333333333333 |
RT_STRING | 0x835de8 | 0x2da | data | Chinese | Taiwan | 0.3698630136986301 |
RT_STRING | 0x836b10 | 0x8a | data | Chinese | Taiwan | 0.6594202898550725 |
RT_STRING | 0x835d38 | 0xac | data | Chinese | Taiwan | 0.45348837209302323 |
RT_STRING | 0x836a00 | 0xde | data | Chinese | Taiwan | 0.536036036036036 |
RT_STRING | 0x836330 | 0x4a8 | data | Chinese | Taiwan | 0.3221476510067114 |
RT_STRING | 0x8367d8 | 0x228 | data | Chinese | Taiwan | 0.4003623188405797 |
RT_STRING | 0x836ae0 | 0x2c | data | Chinese | Taiwan | 0.5227272727272727 |
RT_STRING | 0x836ba0 | 0x53c | data | Chinese | Taiwan | 0.2947761194029851 |
RT_GROUP_CURSOR | 0x834000 | 0x22 | Lotus unknown worksheet or configuration, revision 0x2 | Chinese | Taiwan | 1.0294117647058822 |
RT_GROUP_CURSOR | 0x8347f0 | 0x14 | Lotus unknown worksheet or configuration, revision 0x1 | Chinese | Taiwan | 1.3 |
RT_GROUP_CURSOR | 0x834160 | 0x14 | Lotus unknown worksheet or configuration, revision 0x1 | Chinese | Taiwan | 1.3 |
RT_GROUP_CURSOR | 0x8346a0 | 0x14 | Lotus unknown worksheet or configuration, revision 0x1 | Chinese | Taiwan | 1.3 |
RT_GROUP_CURSOR | 0x834550 | 0x14 | Lotus unknown worksheet or configuration, revision 0x1 | Chinese | Taiwan | 1.3 |
RT_GROUP_CURSOR | 0x834e80 | 0x14 | Lotus unknown worksheet or configuration, revision 0x1 | Chinese | Taiwan | 1.3 |
RT_GROUP_CURSOR | 0x834400 | 0x14 | Lotus unknown worksheet or configuration, revision 0x1 | Chinese | Taiwan | 1.3 |
RT_GROUP_CURSOR | 0x834a90 | 0x14 | Lotus unknown worksheet or configuration, revision 0x1 | Chinese | Taiwan | 1.3 |
RT_GROUP_CURSOR | 0x8342b0 | 0x14 | Lotus unknown worksheet or configuration, revision 0x1 | Chinese | Taiwan | 1.3 |
RT_GROUP_CURSOR | 0x834940 | 0x14 | Lotus unknown worksheet or configuration, revision 0x1 | Chinese | Taiwan | 1.3 |
RT_GROUP_CURSOR | 0x834be0 | 0x14 | Lotus unknown worksheet or configuration, revision 0x1 | Chinese | Taiwan | 1.3 |
RT_GROUP_CURSOR | 0x834d30 | 0x14 | Lotus unknown worksheet or configuration, revision 0x1 | Chinese | Taiwan | 1.3 |
RT_GROUP_CURSOR | 0x834fd0 | 0x14 | Lotus unknown worksheet or configuration, revision 0x1 | Chinese | Taiwan | 1.3 |
RT_GROUP_CURSOR | 0x835120 | 0x14 | Lotus unknown worksheet or configuration, revision 0x1 | Chinese | Taiwan | 1.3 |
RT_GROUP_CURSOR | 0x835270 | 0x14 | Lotus unknown worksheet or configuration, revision 0x1 | Chinese | Taiwan | 1.3 |
RT_GROUP_ICON | 0x832f98 | 0x68 | data | Chinese | Taiwan | 0.7403846153846154 |
RT_VERSION | 0x833bf8 | 0x214 | data | Chinese | Taiwan | 0.4755639097744361 |
RT_MANIFEST | 0x8370e0 | 0x3d6 | XML 1.0 document, Unicode text, UTF-8 (with BOM) text, with very long lines (906), with CRLF line terminators | English | United States | 0.4989816700610998 |
DLL | Import |
---|---|
KERNEL32.dll | OutputDebugStringW, WriteConsoleW, GetCurrentDirectoryW, CreateFileW, SetEnvironmentVariableA, GetLastError, EnterCriticalSection, LeaveCriticalSection, InitializeCriticalSectionEx, DeleteCriticalSection, LoadResource, LockResource, FindResourceW, MultiByteToWideChar, WideCharToMultiByte, GetTickCount, DecodePointer, RaiseException, HeapAlloc, HeapReAlloc, HeapFree, HeapSize, InterlockedExchange, GetProcessAffinityMask, GetConsoleScreenBufferInfo, SetConsoleTextAttribute, CreateDirectoryA, LCMapStringW, GetTimeFormatW, SizeofResource, GetDateFormatW, GetProcessHeap, InitializeCriticalSectionAndSpinCount, OutputDebugStringA, CloseHandle, InitializeCriticalSection, SetEvent, ResetEvent, WaitForSingleObject, CreateEventA, Sleep, CreateThread, GetLocalTime, VirtualFree, GetTimeZoneInformation, ReleaseSemaphore, CreateSemaphoreA, QueryPerformanceCounter, QueryPerformanceFrequency, SetWaitableTimer, CancelWaitableTimer, GetCurrentProcess, GetCurrentThread, SetThreadPriority, GetThreadPriority, SetPriorityClass, GetPriorityClass, GetVersionExA, CreateWaitableTimerA, FreeLibrary, GetProcAddress, LoadLibraryA, FindResourceA, EncodePointer, SetLastError, GetCurrentThreadId, GetSystemDirectoryW, FreeResource, GetModuleFileNameW, GetModuleHandleA, GetModuleHandleW, LoadLibraryExW, GlobalDeleteAtom, lstrcmpW, LoadLibraryW, GlobalAddAtomA, GlobalFindAtomA, GlobalGetAtomNameA, CompareStringA, GlobalLock, GlobalUnlock, GlobalFree, ResumeThread, GetModuleFileNameA, GlobalAlloc, lstrcmpA, GetPrivateProfileIntA, GetPrivateProfileStringA, WritePrivateProfileStringA, GetCurrentProcessId, GlobalSize, LocalFree, MulDiv, FormatMessageA, CopyFileA, FileTimeToLocalFileTime, LocalAlloc, FileTimeToSystemTime, GlobalFlags, TlsAlloc, TlsGetValue, TlsSetValue, TlsFree, GlobalReAlloc, GlobalHandle, LocalReAlloc, CompareStringW, GetLocaleInfoW, GetSystemDefaultUILanguage, GetUserDefaultUILanguage, GetOEMCP, GetCPInfo, GetACP, GetCurrentDirectoryA, DeleteFileA, CreateFileA, FindClose, FindFirstFileA, FlushFileBuffers, GetFileSize, GetFullPathNameA, LockFile, ReadFile, SetEndOfFile, SetFilePointer, UnlockFile, WriteFile, DuplicateHandle, lstrcmpiA, GetVolumeInformationA, GetThreadLocale, GetFileAttributesA, GetFileSizeEx, GetFileTime, SetErrorMode, FindNextFileA, GetWindowsDirectoryA, lstrcpyA, VerSetConditionMask, VerifyVersionInfoA, GetTempPathA, GetTempFileNameA, GetProfileIntA, SearchPathA, VirtualProtect, FindResourceExW, RtlUnwind, IsDebuggerPresent, IsProcessorFeaturePresent, GetSystemInfo, VirtualAlloc, VirtualQuery, GetCommandLineA, GetSystemTimeAsFileTime, ExitThread, ExitProcess, GetModuleHandleExW, AreFileApisANSI, HeapQueryInformation, SetStdHandle, GetFileType, UnhandledExceptionFilter, SetUnhandledExceptionFilter, TerminateProcess, GetStartupInfoW, IsValidCodePage, GetStdHandle, GetEnvironmentStringsW, FreeEnvironmentStringsW, GetStringTypeW, GetConsoleCP, GetConsoleMode, ReadConsoleW, SetFilePointerEx, GetDriveTypeW, GetFileAttributesExA |
USER32.dll | CreatePopupMenu, MessageBeep, GetNextDlgGroupItem, IsRectEmpty, IntersectRect, SetRect, InvalidateRgn, CopyAcceleratorTableA, OffsetRect, CharNextA, LoadCursorW, ReleaseCapture, SetCapture, CharUpperA, DestroyIcon, InvalidateRect, DeleteMenu, CopyImage, LoadCursorA, GetSysColorBrush, RealChildWindowFromPoint, SystemParametersInfoA, InflateRect, GetMenuItemInfoA, DestroyMenu, ClientToScreen, EndPaint, BeginPaint, GetWindowDC, TabbedTextOutA, GrayStringA, DrawTextExA, DrawTextA, RemoveMenu, InsertMenuA, GetMenuState, GetMenuStringA, KillTimer, SetTimer, WaitMessage, WindowFromPoint, MapVirtualKeyA, GetKeyNameTextA, MapDialogRect, SetWindowContextHelpId, GetWindowThreadProcessId, SetCursor, ShowOwnedPopups, PostQuitMessage, GetMessageA, GetDesktopWindow, GetActiveWindow, GetNextDlgTabItem, EndDialog, CreateDialogIndirectParamA, IsDialogMessageA, SetWindowTextA, IsWindowEnabled, SendDlgItemMessageA, CheckRadioButton, CheckDlgButton, MoveWindow, ShowWindow, GetMonitorInfoA, MonitorFromWindow, WinHelpA, GetScrollInfo, SetScrollInfo, GetMenuDefaultItem, CallNextHookEx, UnhookWindowsHookEx, SetWindowsHookExA, GetWindow, GetLastActivePopup, GetTopWindow, GetClassNameA, GetClassLongA, SetWindowLongA, DestroyCursor, EqualRect, GetSysColor, MapWindowPoints, ScreenToClient, MessageBoxA, AdjustWindowRectEx, GetWindowRect, GetWindowTextLengthA, GetWindowTextA, RemovePropA, GetPropA, SetPropA, ShowScrollBar, GetScrollRange, SetScrollRange, GetScrollPos, SetScrollPos, ScrollWindow, RedrawWindow, ValidateRect, SetForegroundWindow, GetForegroundWindow, SetActiveWindow, UpdateWindow, TrackPopupMenu, GetMenuItemCount, GetMenuItemID, GetSubMenu, SetMenu, GetMenu, GetCapture, GetKeyState, SetFocus, GetDlgCtrlID, GetDlgItem, IsWindowVisible, EndDeferWindowPos, DeferWindowPos, CreateMenu, EnableWindow, SendMessageA, IsIconic, GetSystemMetrics, GetSystemMenu, BeginDeferWindowPos, SetWindowPlacement, GetWindowPlacement, SetWindowPos, DestroyWindow, IsChild, IsWindow, CreateWindowExA, GetClassInfoExA, GetClassInfoA, RegisterClassA, CallWindowProcA, PostMessageA, GetMessageTime, GetMessagePos, RegisterWindowMessageA, BringWindowToTop, LoadAcceleratorsA, TranslateAcceleratorA, LoadMenuA, InsertMenuItemA, SetRectEmpty, LoadImageA, UnpackDDElParam, ReuseDDElParam, RegisterClipboardFormatA, DrawFocusRect, DrawIconEx, GetIconInfo, GetAsyncKeyState, LoadBitmapW, GetParent, EnableScrollBar, HideCaret, InvertRect, NotifyWinEvent, LoadIconA, GetWindowRgn, AppendMenuA, DrawIcon, GetDC, ReleaseDC, GetClientRect, GetCursorPos, FillRect, PtInRect, LoadIconW, UnregisterClassA, DefWindowProcA, ShowCursor, wvsprintfA, TranslateMessage, DispatchMessageA, PeekMessageA, CopyRect, GetFocus, CheckMenuItem, UnionRect, EnableMenuItem, SetMenuItemBitmaps, GetMenuCheckMarkDimensions, SetMenuItemInfoA, SubtractRect, GetUpdateRect, IsClipboardFormatAvailable, TranslateMDISysAccel, DefMDIChildProcA, DefFrameProcA, DrawMenuBar, FrameRect, CharUpperBuffA, ModifyMenuA, SetMenuDefaultItem, CopyIcon, GetDoubleClickTime, SetClassLongA, SetCursorPos, DestroyAcceleratorTable, CreateAcceleratorTableA, LoadAcceleratorsW, ToAsciiEx, GetKeyboardState, LockWindowUpdate, MapVirtualKeyExA, IsCharLowerA, GetKeyboardLayout, IsZoomed, GetComboBoxInfo, LoadMenuW, TrackMouseEvent, MonitorFromPoint, UpdateLayeredWindow, IsMenu, SetWindowRgn, DrawFrameControl, DrawEdge, LoadImageW, DrawStateA, EmptyClipboard, SetClipboardData, CloseClipboard, OpenClipboard, EnumDisplayMonitors, SetLayeredWindowAttributes, PostThreadMessageA, SetParent, GetWindowLongA |
GDI32.dll | GetTextFaceA, GetViewportOrgEx, LPtoDP, GetWindowOrgEx, GetBoundsRect, FillRgn, SetPaletteEntries, ExtFloodFill, SetPixelV, PtInRegion, FrameRgn, RoundRect, CreateRoundRectRgn, OffsetRgn, EnumFontFamiliesExA, Polyline, Polygon, CreatePolygonRgn, Ellipse, CreateEllipticRgn, SetDIBColorTable, CreateDIBSection, StretchBlt, SetPixel, GetTextCharsetInfo, EnumFontFamiliesA, StretchDIBits, RealizePalette, GetSystemPaletteEntries, GetPaletteEntries, GetNearestPaletteIndex, CreatePalette, DPtoLP, SetRectRgn, GetMapMode, CombineRgn, GetRgnBox, GetTextColor, GetBkColor, GetTextMetricsA, GetTextExtentPoint32A, ScaleWindowExtEx, ScaleViewportExtEx, OffsetWindowOrgEx, OffsetViewportOrgEx, SetWindowOrgEx, SetWindowExtEx, SetViewportOrgEx, SetViewportExtEx, ExtTextOutA, MoveToEx, SetTextAlign, SetStretchBltMode, SetROP2, SetPolyFillMode, GetLayout, SetLayout, SetMapMode, SelectPalette, ExtSelectClipRgn, SelectClipRgn, SaveDC, RestoreDC, RectVisible, PtVisible, LineTo, IntersectClipRect, GetWindowExtEx, GetViewportExtEx, GetStockObject, GetPixel, GetObjectType, GetClipBox, ExcludeClipRect, Escape, CreateRectRgn, CreatePatternBrush, CreateHatchBrush, CreateDCA, CopyMetaFileA, PatBlt, CreateRectRgnIndirect, CreateBitmap, TextOutW, SetBkMode, CreateFontW, CreateFontIndirectA, TextOutA, GetObjectA, SetTextColor, SetBkColor, SelectObject, Rectangle, GetDeviceCaps, DeleteObject, DeleteDC, CreateSolidBrush, CreatePen, CreateFontA, CreateDIBitmap, CreateCompatibleDC, CreateCompatibleBitmap, BitBlt |
MSIMG32.dll | TransparentBlt, AlphaBlend |
WINSPOOL.DRV | OpenPrinterA, DocumentPropertiesA, ClosePrinter |
ADVAPI32.dll | CryptAcquireContextA, RegOpenKeyExA, RegQueryValueExA, RegCreateKeyExA, RegDeleteKeyA, RegDeleteValueA, RegSetValueExA, RegEnumKeyA, RegQueryValueA, RegEnumValueA, RegEnumKeyExA, RegCloseKey, CryptReleaseContext, CryptGenRandom |
SHELL32.dll | SHBrowseForFolderA, DragAcceptFiles, SHGetFileInfoA, SHGetPathFromIDListA, SHGetSpecialFolderLocation, SHGetDesktopFolder, DragFinish, SHAppBarMessage, DragQueryFileA, ShellExecuteA |
COMCTL32.dll | |
SHLWAPI.dll | PathFindExtensionA, PathFindExtensionW, PathFindFileNameA, PathRemoveFileSpecW, PathIsUNCA, PathStripToRootA, StrFormatKBSizeA |
UxTheme.dll | GetThemeColor, GetWindowTheme, GetThemeSysColor, DrawThemeText, DrawThemeBackground, IsThemeBackgroundPartiallyTransparent, DrawThemeParentBackground, OpenThemeData, CloseThemeData, GetCurrentThemeName, GetThemePartSize, IsAppThemed |
ole32.dll | CoTaskMemFree, OleDuplicateData, ReleaseStgMedium, CoInitializeEx, CoDisconnectObject, CoGetClassObject, StgCreateDocfileOnILockBytes, StgOpenStorageOnILockBytes, CreateILockBytesOnHGlobal, CoFreeUnusedLibraries, OleInitialize, OleUninitialize, CoRevokeClassObject, OleFlushClipboard, OleIsCurrentClipboard, CoRegisterMessageFilter, CreateStreamOnHGlobal, DoDragDrop, OleLockRunning, OleCreateMenuDescriptor, OleDestroyMenuDescriptor, OleTranslateAccelerator, IsAccelerator, OleGetClipboard, CoLockObjectExternal, RegisterDragDrop, RevokeDragDrop, CLSIDFromProgID, CLSIDFromString, CoInitialize, CoCreateInstance, CoCreateGuid, CoUninitialize, CoTaskMemAlloc |
OLEAUT32.dll | SysAllocString, SysStringLen, SystemTimeToVariantTime, VariantTimeToSystemTime, SafeArrayDestroy, LoadTypeLib, OleCreateFontIndirect, VariantCopy, VarBstrFromDate, SysAllocStringByteLen, VariantChangeType, SysFreeString, VariantClear, VariantInit, SysAllocStringLen |
oledlg.dll | |
WS2_32.dll | getsockname, htonl, htons, inet_addr, ntohs, recvfrom, sendto, WSAStartup, WSACleanup, WSASetLastError, __WSAFDIsSet, shutdown, ntohl, closesocket, connect, ioctlsocket, getsockopt, select, send, setsockopt, socket, WSAGetLastError, getaddrinfo, freeaddrinfo, recv, bind |
gdiplus.dll | GdipCreateBitmapFromStream, GdipBitmapLockBits, GdipBitmapUnlockBits, GdipDeleteGraphics, GdipDrawImageI, GdipCreateFromHDC, GdipSetInterpolationMode, GdipDrawImageRectI, GdipGetImagePixelFormat, GdipGetImageHeight, GdipGetImageWidth, GdipGetImageGraphicsContext, GdipGetImageEncoders, GdipGetImageEncodersSize, GdipCreateBitmapFromHBITMAP, GdipCreateBitmapFromScan0, GdipSaveImageToFile, GdipDisposeImage, GdipCloneImage, GdiplusShutdown, GdiplusStartup, GdipFree, GdipAlloc, GdipGetImagePalette, GdipGetImagePaletteSize |
OLEACC.dll | AccessibleObjectFromWindow, LresultFromObject, CreateStdAccessibleObject |
IMM32.dll | ImmGetContext, ImmGetOpenStatus, ImmReleaseContext |
WINMM.dll | waveInReset, waveInGetPosition, waveOutWrite, waveOutReset, waveInStart, waveOutGetNumDevs, PlaySoundA, timeEndPeriod, timeBeginPeriod, waveOutUnprepareHeader, waveOutPrepareHeader, waveInAddBuffer, waveInPrepareHeader, waveInClose, waveInOpen, waveOutClose, waveOutGetVolume, waveOutSetVolume, waveOutOpen, waveInGetNumDevs |
WININET.dll | InternetCloseHandle, InternetConnectA, InternetOpenA, HttpQueryInfoA, HttpSendRequestA, HttpOpenRequestA, FtpGetCurrentDirectoryA, FtpSetCurrentDirectoryA, FtpOpenFileA, InternetReadFile, FtpFindFirstFileA, InternetSetStatusCallback, InternetGetLastResponseInfoA, InternetSetOptionExA, InternetFindNextFileA, InternetQueryDataAvailable, InternetWriteFile, InternetSetFilePointer |
AVIFIL32.dll | AVIFileInit, AVIStreamWrite, AVIStreamEndStreaming, AVIFileExit, AVIFileOpenA, AVIFileRelease, AVIFileGetStream, AVIStreamRelease, AVIStreamInfoA, AVIStreamStart, AVIStreamLength, AVIStreamReadFormat, AVIStreamRead, AVIFileOpenW, AVIFileCreateStreamA, AVIStreamSetFormat |
Name | Ordinal | Address |
---|---|---|
CDECAudioDecodeExtra | 1 | 0x7c3ef0 |
CDECAudioStart | 2 | 0x7c4720 |
CDECCreate | 3 | 0x7c1d30 |
CDECDecStreamParameter | 4 | 0x7c3e10 |
CDECDecode | 5 | 0x7c3de0 |
CDECDecodeEX | 6 | 0x7c3d80 |
CDECDecodeExtra | 7 | 0x7c37b0 |
CDECDigitalReScaleExtra | 8 | 0x7c2610 |
CDECDigitalReScaleYUVExtra | 9 | 0x7c2fa0 |
CDECEncode | 10 | 0x7c4650 |
CDECEncodeExtra | 11 | 0x7c4250 |
CDECGetFrameRate | 12 | 0x7c4850 |
CDECGetResolution | 13 | 0x7c4820 |
CDECReScaleExtra | 14 | 0x7c2200 |
CDECReScaleYUVExtra | 15 | 0x7c2b60 |
CDECRelease | 16 | 0x7c2140 |
CDECRotateExtra | 17 | 0x7c3540 |
CDECSetAudioCodecUseage | 18 | 0x7c1fb0 |
CDECSetCodecUseage | 19 | 0x7c1dc0 |
CDECSetDeblock | 20 | 0x7c4780 |
CDECSetFormat | 21 | 0x7c4760 |
CDECSetQuality | 22 | 0x7c47b0 |
CDECSetReScaleType | 23 | 0x7c48a0 |
CDECSetReductionRatio | 24 | 0x7c48e0 |
CDECSetResolution | 25 | 0x7c47d0 |
CDECSetRotateType | 26 | 0x7c48c0 |
CDECStart | 27 | 0x7c46d0 |
DCreate | 28 | 0x7bc060 |
DEPTZRender | 29 | 0x7bc2a0 |
DEPTZRender3 | 30 | 0x7bc2e0 |
DEnableFullScreen | 31 | 0x7bc0b0 |
DExit | 32 | 0x774c30 |
DGetVersion | 33 | 0x7753a0 |
DInit | 34 | 0x7747c0 |
DNotifyFullScreenWindow | 35 | 0x7bc110 |
DRegisterAfterBitbltCB | 36 | 0x7bc270 |
DRender | 37 | 0x7bc160 |
DRender2 | 38 | 0x7bc1a0 |
DRender3 | 39 | 0x7bc2e0 |
DRender4 | 40 | 0x7bc320 |
DRender5 | 41 | 0x7bc370 |
DRenderFillRect | 42 | 0x7bc1e0 |
DRenderFillRect2 | 43 | 0x7bc220 |
DSetImageLeftToRight | 44 | 0x7bc410 |
DSetImageUpToDown | 45 | 0x7bc3e0 |
DSetRenderInfo | 46 | 0x775370 |
DSetStretchMode | 47 | 0x7bc0e0 |
FCreate | 48 | 0x7bf660 |
FExit | 49 | 0x774c30 |
FGetTotalFrameSize | 50 | 0x7bf810 |
FGetVersion | 51 | 0x7753a0 |
FInit | 52 | 0x7747c0 |
FResetFrameTime | 53 | 0x7bf6f0 |
FStartRecord | 54 | 0x7bf720 |
FStartRecord2 | 55 | 0x7bf770 |
FStopRecord | 56 | 0x774ec0 |
FWriteData | 57 | 0x7bf7c0 |
FishEye_CloseInterface | 58 | 0x9530c0 |
FishEye_GetCircle | 59 | 0x9530e0 |
FishEye_GetCoordinate | 60 | 0x953130 |
FishEye_Initial | 61 | 0x9532a0 |
FishEye_OpenInterface | 62 | 0x953b40 |
FishEye_Release | 63 | 0x953b60 |
FishEye_Transform | 64 | 0x953bc0 |
FishEye_UserSetCircle | 65 | 0x953d30 |
KCODECCreate | 66 | 0x7d0bb0 |
KCODECDecode1 | 67 | 0x7d0c60 |
KCODECDecode2 | 68 | 0x7d0cb0 |
KCODECRelease | 69 | 0x7d0d00 |
KCODECReset | 70 | 0x7d0c00 |
KCloseInterface | 71 | 0x7cd510 |
KConnect | 72 | 0x7cd190 |
KDecodeFrame | 73 | 0x7cfd80 |
KDecodeFrame2 | 74 | 0x7cfda0 |
KDecodeFrame3 | 75 | 0x7cfdf0 |
KDigitalPTZEnable | 76 | 0x7cfe70 |
KDigitalPTZTo | 77 | 0x7cfea0 |
KDisconnect | 78 | 0x7cd350 |
KDisplayChildScreen | 79 | 0x7d0320 |
KDropNextPFrameTillIFrame | 80 | 0x7d00b0 |
KEnableDITrigger | 81 | 0x7d0500 |
KEnableDaylightTime | 82 | 0x7d0230 |
KEnableDecoder | 83 | 0x7cd840 |
KEnableDeleteFileAfterClose | 84 | 0x7d0590 |
KEnableDisplayTime | 85 | 0x7d0390 |
KEnableFishEye | 86 | 0x7d0680 |
KEnableFishEyeSubWindow | 87 | 0x7d06c0 |
KEnableFixJitter | 88 | 0x7d0650 |
KEnableFullScreen | 89 | 0x7cd760 |
KEnableJitterLessMode | 90 | 0x7cffa0 |
KEnableLocalTime | 91 | 0x7d0200 |
KEnablePTZProtocol | 92 | 0x7cf630 |
KEnablePrivacyMask | 93 | 0x7cffc0 |
KEnableRender | 94 | 0x7cd810 |
KEnableStretchMode | 95 | 0x7cd7e0 |
KEnableSubWindow | 96 | 0x7d0b50 |
KFishEyeGetCircle | 97 | 0x7d0a00 |
KFishEyeGetDefaultCircle | 98 | 0x7d0a60 |
KFishEyeMoveTo | 99 | 0x7d0920 |
KFishEyeRelativeMove | 100 | 0x7d08e0 |
KFishEyeSetCircle | 101 | 0x7d09a0 |
KFishEyeWindowRelativeMove | 102 | 0x7d0960 |
KFlipImage | 103 | 0x7cff70 |
KFreeAudioToken | 104 | 0x7cd680 |
KGetAudioToken | 105 | 0x7cd630 |
KGetBeginTime | 106 | 0x7ce710 |
KGetBeginTimeUTC | 107 | 0x7ce770 |
KGetCameraName | 108 | 0x7ce910 |
KGetCurrentFilePos | 109 | 0x7d04b0 |
KGetCurrentTime | 110 | 0x7cdf60 |
KGetCurrentTimeUTC | 111 | 0x7cdfb0 |
KGetDIDefaultValueByHTTP | 112 | 0x7ce7d0 |
KGetDIOStatusByHTTP | 113 | 0x7ceb70 |
KGetDIOStatusByHTTPEx | 114 | 0x7ceb10 |
KGetDeviceTypeByHTTP | 115 | 0x7cdca0 |
KGetEndTime | 116 | 0x7ce740 |
KGetEndTimeUTC | 117 | 0x7ce7a0 |
KGetFishEyeCurrentCoordinate | 118 | 0x7d08a0 |
KGetFishEyePTZMoveTo | 119 | 0x7d0740 |
KGetFishEyeRotationAngle | 120 | 0x7d0860 |
KGetFishEyeRotationAngleEx | 121 | 0x7d0b10 |
KGetFrameRateMode | 122 | 0x7cf330 |
KGetLastError | 123 | 0x7ce990 |
KGetLastFrame | 124 | 0x7d0130 |
KGetLastFrame2 | 125 | 0x7d0180 |
KGetLastFrame3 | 126 | 0x7d01b0 |
KGetMotionInfo | 127 | 0x7cd3e0 |
KGetMotionInfoEx | 128 | 0x7cd440 |
KGetNextIFrame | 129 | 0x7cf290 |
KGetNumberOfChannelByHTTP | 130 | 0x7cdcf0 |
KGetPIRConfig | 131 | 0x7cd4c0 |
KGetPortInfoByHTTP | 132 | 0x7cdd40 |
KGetPrevIFrame | 133 | 0x7cf2e0 |
KGetRawFileInfo2 | 134 | 0x7d0410 |
KGetRawFileInfo3 | 135 | 0x7d0460 |
KGetSubWindowInfo | 136 | 0x7d0b80 |
KGetTCPTypeByHTTP | 137 | 0x7cdc50 |
KGetTotalReceiveAudioFrameCount | 138 | 0x7ce8c0 |
KGetTotalReceiveSize | 139 | 0x7ce820 |
KGetTotalReceiveVideoFrameCount | 140 | 0x7ce870 |
KGetVersion | 141 | 0x7ccce0 |
KGetVideoConfig | 142 | 0x7cd000 |
KGetVideoConfig2 | 143 | 0x7cd050 |
KGetVideoConfig3 | 144 | 0x7cd0a0 |
KGetVideoFrameCount | 145 | 0x7d02d0 |
KGetVolume | 146 | 0x7cd570 |
KMirrorImage | 147 | 0x7cff40 |
KNotifyFullScreenWindow | 148 | 0x7cd790 |
KOpenInterface | 149 | 0x7ccd40 |
KPCI4100Get4100ChannelCount | 150 | 0x7cf460 |
KPCI4100GetCardCount | 151 | 0x7cf410 |
KPCI4100GetChannelHSync | 152 | 0x7cf550 |
KPCI4100SearchCapCard | 153 | 0x7cf4b0 |
KPCI4100SearchCapChannel | 154 | 0x7cf500 |
KPCI4100SetDICallback | 155 | 0x7cf3e0 |
KPTZBLC | 156 | 0x7cf8b0 |
KPTZDayNight | 157 | 0x7cf900 |
KPTZDegreeToUnit | 158 | 0x7cfc60 |
KPTZEnumerateFunctions | 159 | 0x7cfa90 |
KPTZEnumerateProtocol | 160 | 0x7cf9f0 |
KPTZEnumerateVender | 161 | 0x7cfa40 |
KPTZFocus | 162 | 0x7cf950 |
KPTZGetAbsPTZCommand | 163 | 0x7cfb40 |
KPTZGetAbsPTZCommandByUnit | 164 | 0x7cfbc0 |
KPTZGetCommand | 165 | 0x7cfae0 |
KPTZGetRequestAbsPTZCommand | 166 | 0x7cfd10 |
KPTZGetUnitFromBuffer | 167 | 0x7cfcc0 |
KPTZIris | 168 | 0x7cf9a0 |
KPTZLoadProtocol | 169 | 0x7cf680 |
KPTZMove | 170 | 0x7cf720 |
KPTZOSD | 171 | 0x7cf860 |
KPTZPreset | 172 | 0x7cf810 |
KPTZSetZoomSpeed | 173 | 0x7cf7c0 |
KPTZUnitToDegree | 174 | 0x7cfc20 |
KPTZUnloadProtocol | 175 | 0x7cf6d0 |
KPTZZoom | 176 | 0x7cf770 |
KPause | 177 | 0x7cd2c0 |
KPlay | 178 | 0x7cd260 |
KQuadGetBrightness | 179 | 0x7cef70 |
KQuadGetContrast | 180 | 0x7cf010 |
KQuadGetDisplayMode | 181 | 0x7cebf0 |
KQuadGetHue | 182 | 0x7cf150 |
KQuadGetMotionDetectionEnable | 183 | 0x7ced90 |
KQuadGetMotionSensitive | 184 | 0x7cee30 |
KQuadGetOSDEnable | 185 | 0x7cecf0 |
KQuadGetSaturation | 186 | 0x7cf0b0 |
KQuadGetTitleName | 187 | 0x7ceed0 |
KQuadSetBrightness | 188 | 0x7cefc0 |
KQuadSetContrast | 189 | 0x7cf060 |
KQuadSetDisplayMode | 190 | 0x7ceca0 |
KQuadSetHue | 191 | 0x7cf1a0 |
KQuadSetMotionDetectionEnable | 192 | 0x7cede0 |
KQuadSetMotionSensitive | 193 | 0x7cee80 |
KQuadSetOSDEnable | 194 | 0x7ced40 |
KQuadSetSaturation | 195 | 0x7cf100 |
KQuadSetTitleName | 196 | 0x7cef20 |
KReplaceTimeCodeByLocalTime | 197 | 0x7d0260 |
KReverseImageLeftToRight | 198 | 0x7cfee0 |
KReverseImageUpToDown | 199 | 0x7cff10 |
KSEStartStreaming | 200 | 0x7cd290 |
KSaveReboot | 201 | 0x7ce180 |
KSendAudio | 202 | 0x7cf1f0 |
KSendAudioToSE | 203 | 0x7cf240 |
KSendCommand | 204 | 0x7ceae0 |
KSendCommandToSE | 205 | 0x7cd9b0 |
KSendCommandToStreamingEngine | 206 | 0x7cd960 |
KSendControlCommand | 207 | 0x7ce1b0 |
KSendDO | 208 | 0x7cddd0 |
KSendPTZCommand | 209 | 0x7cdea0 |
KSendRS232Command | 210 | 0x7cde70 |
KSendRS232Setting | 211 | 0x7cde30 |
KSendURLCommand | 212 | 0x7ce1f0 |
KSendURLCommandToDevice | 213 | 0x7cf380 |
KSetAfterRenderCallback | 214 | 0x7cd8a0 |
KSetAfterRenderCallbackEx | 215 | 0x7cd8d0 |
KSetAutoDropFrameByCPUPerformance | 216 | 0x7d0080 |
KSetBitRate | 217 | 0x7ce0c0 |
KSetBrightness | 218 | 0x7ce000 |
KSetCODECType | 219 | 0x7cda00 |
KSetContrast | 220 | 0x7ce030 |
KSetControlDataCallback | 221 | 0x7ce590 |
KSetCurrentPosition | 222 | 0x7cded0 |
KSetCurrentTime | 223 | 0x7cdf00 |
KSetCurrentTimeUTC | 224 | 0x7cdf30 |
KSetDICallback | 225 | 0x7ce4d0 |
KSetDICallback2 | 226 | 0x7ce500 |
KSetDICallback3 | 227 | 0x7ce530 |
KSetDIConfig | 228 | 0x7ce4a0 |
KSetDIDefaultValue | 229 | 0x7ce440 |
KSetDIDefaultValue2 | 230 | 0x7ce470 |
KSetDO | 231 | 0x7cde00 |
KSetDeblock | 232 | 0x7d05f0 |
KSetDebugMessageLevel | 233 | 0x7cd5d0 |
KSetDecodeIFrameOnly | 234 | 0x7cd600 |
KSetDownloadLocalFileName | 235 | 0x7d0560 |
KSetDownloadProgressCallback | 236 | 0x7d0530 |
KSetDrawerType | 237 | 0x7ce960 |
KSetEvent_AfterRender | 238 | 0x7ce6e0 |
KSetEvent_ImageRefresh | 239 | 0x7ce6b0 |
KSetEvent_MotionDetection | 240 | 0x7ce680 |
KSetFPS | 241 | 0x7ce120 |
KSetFilePlayCompleteCallback | 242 | 0x7cebc0 |
KSetFileWriterType | 243 | 0x7cda30 |
KSetFirstB2Callback | 244 | 0x7d0050 |
KSetFishEyeMode | 245 | 0x7d0780 |
KSetFishEyeModule | 246 | 0x7d07c0 |
KSetFishEyePTZMoveTo | 247 | 0x7d0700 |
KSetFishEyeRotationAngle | 248 | 0x7d0810 |
KSetFishEyeRotationAngleEx | 249 | 0x7d0ac0 |
KSetFormat | 250 | 0x7d05c0 |
KSetHue | 251 | 0x7ce090 |
KSetImageCallback3 | 252 | 0x7cd870 |
KSetMediaConfig | 253 | 0x7cce00 |
KSetMediaConfig2 | 254 | 0x7cce90 |
KSetMediaConfig3 | 255 | 0x7ccf20 |
KSetMediaConfig4 | 256 | 0x7ccfb0 |
KSetMotionDetectionCallback | 257 | 0x7ce350 |
KSetMotionDetectionCallback2 | 258 | 0x7ce380 |
KSetMotionDetectionCallback3 | 259 | 0x7ce3b0 |
KSetMotionInfo | 260 | 0x7cd3b0 |
KSetMotionInfoEx | 261 | 0x7cd410 |
KSetMotionVectorCallback | 262 | 0x7ce410 |
KSetMute | 263 | 0x7cd5a0 |
KSetNetworkLossCallback | 264 | 0x7ce320 |
KSetOSDText | 265 | 0x7d03c0 |
KSetPIRConfig | 266 | 0x7cd470 |
KSetPauseAfterCompleted | 267 | 0x7cd2f0 |
KSetPlayDirection | 268 | 0x7ce5f0 |
KSetPlayRate | 269 | 0x7ce5c0 |
KSetPrerecordTime | 270 | 0x7cdc20 |
KSetQuadMotionDetectionCallback | 271 | 0x7ce3e0 |
KSetQuadVideoLossCallback | 272 | 0x7cf5a0 |
KSetQuadVideoRecoveryCallback | 273 | 0x7cf5d0 |
KSetQuality | 274 | 0x7d0620 |
KSetRS232DataCallback | 275 | 0x7ce560 |
KSetRawDataCallback | 276 | 0x7cd730 |
KSetRecordConfig | 277 | 0x7cdae0 |
KSetRecordingStatusCallback | 278 | 0x7cdbb0 |
KSetRenderInfo | 279 | 0x7cd380 |
KSetResolution | 280 | 0x7ce0f0 |
KSetResolutionChangeCallback | 281 | 0x7cd900 |
KSetResolutionChangeCallback2 | 282 | 0x7cd930 |
KSetSaturation | 283 | 0x7ce060 |
KSetSequenceHeaderChecker | 284 | 0x7ce9e0 |
KSetSmoothFastPlayback | 285 | 0x7d02a0 |
KSetStreamingEngineMediaConfig | 286 | 0x7cea10 |
KSetStreamingEngineMediaConfig2 | 287 | 0x7cea60 |
KSetTCPType | 288 | 0x7cdda0 |
KSetTargetDeviceType | 289 | 0x7cf600 |
KSetTextOut | 290 | 0x7cec40 |
KSetTimeCodeCallback | 291 | 0x7ce230 |
KSetTimeCodeCallbackEx | 292 | 0x7d0020 |
KSetVariableFPS | 293 | 0x7ce150 |
KSetVideoConfig | 294 | 0x7cd0f0 |
KSetVideoConfig2 | 295 | 0x7cd140 |
KSetVideoLossCallback | 296 | 0x7ce260 |
KSetVideoLossCallback2 | 297 | 0x7ce2c0 |
KSetVideoRecoveryCallback | 298 | 0x7ce290 |
KSetVideoRecoveryCallback2 | 299 | 0x7ce2f0 |
KSetVideoStreamControlCallback | 300 | 0x7d0360 |
KSetVideoTransformConfig | 301 | 0x7ceab0 |
KSetVolume | 302 | 0x7cd540 |
KShowLastFrame | 303 | 0x7d00e0 |
KStartAudioTransfer | 304 | 0x7cd6b0 |
KStartDecodeMode | 305 | 0x7cfd60 |
KStartRecord | 306 | 0x7cda60 |
KStartRecord2 | 307 | 0x7cdb20 |
KStartStreaming | 308 | 0x7cd1e0 |
KStepNextFrame | 309 | 0x7ce650 |
KStepPrevFrame | 310 | 0x7ce620 |
KStop | 311 | 0x7cd320 |
KStopAudioTransfer | 312 | 0x7cd700 |
KStopDecodeMode | 313 | 0x7cfe50 |
KStopRecord | 314 | 0x7cdab0 |
KStopRecord2 | 315 | 0x7cdb80 |
KStopStreaming | 316 | 0x7cd230 |
PTZCloseInterface | 317 | 0x7f9390 |
PTZDegreeToUnit | 318 | 0x7f93d0 |
PTZEnumerateFunction | 319 | 0x7f9430 |
PTZEnumerateProtocol | 320 | 0x7f9480 |
PTZEnumerateVender | 321 | 0x7f94d0 |
PTZGetAbsPTZCommand | 322 | 0x7f9520 |
PTZGetAbsPTZCommandByUnit | 323 | 0x7f95a0 |
PTZGetCommand | 324 | 0x7f9600 |
PTZGetCommandExt | 325 | 0x7f9660 |
PTZGetCommandStr | 326 | 0x7f96c0 |
PTZGetProtocolStr | 327 | 0x7f9710 |
PTZGetRequestAbsPTZCommand | 328 | 0x7f9760 |
PTZGetUnitFromBuffer | 329 | 0x7f97b0 |
PTZGetVenderProtocolStr | 330 | 0x7f9800 |
PTZGetVenderStr | 331 | 0x7f9850 |
PTZLoadProtocolFile | 332 | 0x7f98a0 |
PTZLoadProtocolRS | 333 | 0x7f98f0 |
PTZOpenInterface | 334 | 0x7f9940 |
PTZUnitToDegree | 335 | 0x7f9990 |
PTZUnloadProtocol | 336 | 0x7f99d0 |
XConnect | 337 | 0x774c60 |
XCreate | 338 | 0x7747e0 |
XDisconnect | 339 | 0x774cb0 |
XEnableDeleteFileAfterClose | 340 | 0x7759c0 |
XExit | 341 | 0x774c30 |
XGetBeginTime | 342 | 0x775520 |
XGetBeginTimeUTC | 343 | 0x775570 |
XGetCurrentPos | 344 | 0x775840 |
XGetCurrentTime | 345 | 0x775700 |
XGetCurrentTimeUTC | 346 | 0x775750 |
XGetEndTime | 347 | 0x7755c0 |
XGetEndTimeUTC | 348 | 0x775610 |
XGetErrMsg | 349 | 0x775010 |
XGetMotionInfo | 350 | 0x775420 |
XGetNextFrame | 351 | 0x7750c0 |
XGetNextFrame2 | 352 | 0x775110 |
XGetNextIFrame | 353 | 0x775200 |
XGetNextIFrame2 | 354 | 0x775250 |
XGetPrevFrame | 355 | 0x775160 |
XGetPrevFrame2 | 356 | 0x7751b0 |
XGetPrevIFrame | 357 | 0x7752a0 |
XGetPrevIFrame2 | 358 | 0x7752f0 |
XGetRawFileInfo2 | 359 | 0x7757a0 |
XGetRawFileInfo3 | 360 | 0x7757f0 |
XGetSendDataType | 361 | 0x775a20 |
XGetSessionID | 362 | 0x7754d0 |
XGetStatusCode | 363 | 0x774fc0 |
XGetSupportEvents | 364 | 0x7759f0 |
XGetVideoConfig | 365 | 0x775370 |
XGetVideoConfig2 | 366 | 0x7753a0 |
XGetVideoConfig3 | 367 | 0x7753c0 |
XGetXSession | 368 | 0x774f70 |
XInit | 369 | 0x7747c0 |
XLiveCheck | 370 | 0x7758d0 |
XSendAudioData | 371 | 0x775a70 |
XSendCommand | 372 | 0x775450 |
XSendData | 373 | 0x775900 |
XSetControlDataCallBack | 374 | 0x7754a0 |
XSetCurrentTime | 375 | 0x775660 |
XSetCurrentTimeUTC | 376 | 0x7756b0 |
XSetDownloadLocalFileName | 377 | 0x775990 |
XSetDownloadProgressCallback | 378 | 0x775950 |
XSetEngineConfig | 379 | 0x774ce0 |
XSetEngineConfig2 | 380 | 0x774d10 |
XSetMediaConfig | 381 | 0x774d40 |
XSetMediaConfig2 | 382 | 0x774dc0 |
XSetMediaConfig3 | 383 | 0x774e40 |
XSetMediaConfig4 | 384 | 0x774ec0 |
XSetMotionInfo | 385 | 0x7753f0 |
XSetVideoConfig | 386 | 0x775340 |
XSetVideoTransformConfig | 387 | 0x7758a0 |
XStartStreaming | 388 | 0x774ef0 |
XStartTransferStreamingEngineData | 389 | 0x775090 |
XStop | 390 | 0x775060 |
XStopStreaming | 391 | 0x774f40 |
Language of compilation system | Country where language is spoken | Map |
---|---|---|
Chinese | Taiwan | |
English | United States |
Target ID: | 0 |
Start time: | 18:59:48 |
Start date: | 18/04/2024 |
Path: | C:\Users\user\Desktop\ArchivePlayer.exe |
Wow64 process (32bit): | true |
Commandline: | |
Imagebase: | 0x400000 |
File size: | 7'742'976 bytes |
MD5 hash: | 9FC7930A0E24916B1F136C2EC0832CA8 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Execution Graph
Execution Coverage: | 2% |
Dynamic/Decrypted Code Coverage: | 0% |
Signature Coverage: | 6.2% |
Total number of Nodes: | 1674 |
Total number of Limit Nodes: | 87 |
Graph
Control-flow Graph
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007C99C0 Relevance: 19.6, APIs: 9, Strings: 2, Instructions: 312windowCOMMON
Control-flow Graph
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
|
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00846494 Relevance: 72.1, APIs: 36, Strings: 5, Instructions: 382stringCOMMON
Control-flow Graph
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 008469A7 Relevance: 64.8, APIs: 43, Instructions: 316COMMON
Control-flow Graph
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00804B8F Relevance: 31.7, APIs: 17, Strings: 1, Instructions: 190windowCOMMON
Control-flow Graph
APIs |
|
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007C9460 Relevance: 26.5, APIs: 14, Strings: 1, Instructions: 252windowCOMMON
Control-flow Graph
APIs |
|
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00818A31 Relevance: 22.7, APIs: 15, Instructions: 172memoryCOMMONLIBRARYCODE
Control-flow Graph
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0092C347 Relevance: 19.6, APIs: 13, Instructions: 89COMMON
Control-flow Graph
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007C5540 Relevance: 14.3, APIs: 6, Strings: 2, Instructions: 288windowCOMMON
Control-flow Graph
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00809AF7 Relevance: 12.4, APIs: 4, Strings: 3, Instructions: 119libraryCOMMON
Control-flow Graph
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00803D7C Relevance: 12.3, APIs: 5, Strings: 2, Instructions: 87libraryloaderthreadCOMMON
Control-flow Graph
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Control-flow Graph
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Control-flow Graph
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 008173D9 Relevance: 9.1, APIs: 6, Instructions: 61stringCOMMON
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0080AB30 Relevance: 7.6, APIs: 5, Instructions: 143COMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 008461D5 Relevance: 7.6, APIs: 5, Instructions: 61COMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00828C03 Relevance: 7.6, APIs: 5, Instructions: 58COMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00810770 Relevance: 6.1, APIs: 4, Instructions: 89networkCOMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007C7500 Relevance: 4.6, APIs: 3, Instructions: 84COMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0080BAEF Relevance: 4.5, APIs: 3, Instructions: 36windowCOMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
|
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 008086BB Relevance: 3.1, APIs: 2, Instructions: 58COMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 008040B3 Relevance: 3.1, APIs: 2, Instructions: 57COMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00813D2D Relevance: 3.0, APIs: 2, Instructions: 34COMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00828C48 Relevance: 3.0, APIs: 2, Instructions: 32COMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0080505E Relevance: 3.0, APIs: 2, Instructions: 28COMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0080A7EA Relevance: 3.0, APIs: 2, Instructions: 27COMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0080B91D Relevance: 3.0, APIs: 2, Instructions: 15threadCOMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 008038ED Relevance: 1.6, APIs: 1, Instructions: 78COMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007C4EC0 Relevance: 1.6, APIs: 1, Instructions: 59COMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 008113E9 Relevance: 1.5, APIs: 1, Instructions: 44COMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0080C85A Relevance: 1.5, APIs: 1, Instructions: 42COMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00807E41 Relevance: 1.5, APIs: 1, Instructions: 29COMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0080B3BF Relevance: 1.5, APIs: 1, Instructions: 26COMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007C6080 Relevance: 1.5, APIs: 1, Instructions: 21COMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0080BFB6 Relevance: 1.5, APIs: 1, Instructions: 21COMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0080A3CC Relevance: 1.5, APIs: 1, Instructions: 19windowCOMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0084612A Relevance: 1.5, APIs: 1, Instructions: 13COMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0081270B Relevance: 1.5, APIs: 1, Instructions: 8COMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0080C38F Relevance: 1.3, APIs: 1, Instructions: 35COMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0080C709 Relevance: 1.3, APIs: 1, Instructions: 13COMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007F4460 Relevance: 219.1, APIs: 63, Strings: 62, Instructions: 325libraryloaderCOMMON
APIs |
|
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007CA6F0 Relevance: 116.5, APIs: 59, Strings: 7, Instructions: 998windowfileCOMMON
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007A03D0 Relevance: 45.7, APIs: 18, Strings: 8, Instructions: 206networkCOMMON
APIs |
|
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
|
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007B4540 Relevance: 19.4, APIs: 10, Strings: 1, Instructions: 163networkCOMMON
APIs |
|
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 008140DB Relevance: 15.9, APIs: 8, Strings: 1, Instructions: 186comCOMMON
APIs |
|
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007DA7A0 Relevance: 14.2, APIs: 9, Instructions: 697sleepsynchronizationCOMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 008144D5 Relevance: 12.5, APIs: 8, Instructions: 458COMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0092CDB1 Relevance: 10.6, APIs: 7, Instructions: 108timeCOMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007BAB50 Relevance: 9.1, APIs: 6, Instructions: 69networkCOMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007C84B0 Relevance: 7.6, APIs: 5, Instructions: 145windowCOMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007B8F10 Relevance: 3.1, APIs: 2, Instructions: 131COMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00974672 Relevance: 2.3, APIs: 1, Instructions: 796COMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0074E750 Relevance: 2.1, APIs: 1, Instructions: 638COMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007E4CF0 Relevance: 2.1, APIs: 1, Instructions: 632COMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007F8080 Relevance: 1.8, APIs: 1, Instructions: 343COMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007B6160 Relevance: 1.8, APIs: 1, Instructions: 334COMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007B8680 Relevance: .7, Instructions: 749COMMON
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0078C690 Relevance: .6, Instructions: 633COMMON
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007EC0F0 Relevance: .4, Instructions: 443COMMON
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007F65A0 Relevance: .3, Instructions: 307COMMON
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007E6CF0 Relevance: .3, Instructions: 278COMMON
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007DE100 Relevance: .2, Instructions: 234COMMON
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00418B70 Relevance: .1, Instructions: 144COMMON
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 006CCBD0 Relevance: .1, Instructions: 94COMMON
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0092A700 Relevance: .1, Instructions: 76COMMON
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007F6010 Relevance: .1, Instructions: 68COMMON
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
|
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007F4AE0 Relevance: 68.4, APIs: 20, Strings: 19, Instructions: 127libraryloaderCOMMON
APIs |
|
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
|
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007CC230 Relevance: 61.6, APIs: 30, Strings: 5, Instructions: 358timewindowCOMMON
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
|
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007F4DD0 Relevance: 56.1, APIs: 16, Strings: 16, Instructions: 108libraryloaderCOMMON
APIs |
|
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007E44D0 Relevance: 32.0, APIs: 15, Strings: 3, Instructions: 461windowsleepCOMMON
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0084C43B Relevance: 28.2, APIs: 15, Strings: 1, Instructions: 237windowCOMMON
APIs |
|
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0078CF20 Relevance: 28.2, APIs: 15, Strings: 1, Instructions: 197synchronizationnetworkCOMMON
APIs |
|
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007BACB0 Relevance: 27.4, APIs: 18, Instructions: 356COMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
|
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007927C0 Relevance: 25.8, APIs: 17, Instructions: 335COMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00792D00 Relevance: 25.8, APIs: 17, Instructions: 292COMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007A6D20 Relevance: 24.5, APIs: 16, Instructions: 489COMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007B2350 Relevance: 22.6, APIs: 15, Instructions: 122windowsynchronizationfileCOMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0084A798 Relevance: 21.2, APIs: 11, Strings: 1, Instructions: 232memoryCOMMON
APIs |
|
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007B0EC0 Relevance: 19.6, APIs: 13, Instructions: 139windowsynchronizationfileCOMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007C8C80 Relevance: 19.6, APIs: 7, Strings: 4, Instructions: 321fileCOMMON
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0040A080 Relevance: 18.4, APIs: 12, Instructions: 398COMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0084A482 Relevance: 18.2, APIs: 12, Instructions: 196fileCOMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00782560 Relevance: 17.8, APIs: 7, Strings: 3, Instructions: 326threadCOMMON
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
|
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007AAA40 Relevance: 17.6, APIs: 9, Strings: 1, Instructions: 91networkCOMMON
APIs |
|
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00788080 Relevance: 16.6, APIs: 11, Instructions: 132COMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 008049E5 Relevance: 15.8, APIs: 6, Strings: 3, Instructions: 78libraryloaderCOMMON
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0084AE94 Relevance: 15.2, APIs: 10, Instructions: 201COMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007B0590 Relevance: 14.1, APIs: 7, Strings: 1, Instructions: 133networkCOMMON
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007C4250 Relevance: 13.8, APIs: 9, Instructions: 323COMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007C0EA0 Relevance: 13.6, APIs: 9, Instructions: 138COMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0080C18A Relevance: 13.6, APIs: 9, Instructions: 102COMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00818E64 Relevance: 13.6, APIs: 9, Instructions: 101memoryCOMMONLIBRARYCODE
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007CA390 Relevance: 13.6, APIs: 9, Instructions: 68COMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007D8C00 Relevance: 12.3, APIs: 8, Instructions: 291COMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0078AC00 Relevance: 12.1, APIs: 8, Instructions: 109windowsynchronizationCOMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00784880 Relevance: 12.1, APIs: 8, Instructions: 94windowsynchronizationCOMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 008462BA Relevance: 12.1, APIs: 8, Instructions: 65COMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0094CD10 Relevance: 11.0, APIs: 7, Instructions: 450COMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007C2610 Relevance: 10.9, APIs: 7, Instructions: 425COMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0094E490 Relevance: 10.8, APIs: 7, Instructions: 327COMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00848A65 Relevance: 10.7, APIs: 5, Strings: 1, Instructions: 225windowCOMMON
APIs |
|
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0078A180 Relevance: 10.6, APIs: 7, Instructions: 148COMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0092CF04 Relevance: 10.6, APIs: 7, Instructions: 117timeCOMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007A0D90 Relevance: 10.6, APIs: 7, Instructions: 97COMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007C2140 Relevance: 10.6, APIs: 7, Instructions: 58COMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
|
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00784080 Relevance: 9.2, APIs: 6, Instructions: 161COMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00782960 Relevance: 9.2, APIs: 6, Instructions: 161COMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00814D07 Relevance: 9.1, APIs: 6, Instructions: 144windowCOMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 005E4B30 Relevance: 9.1, APIs: 6, Instructions: 126COMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007821D0 Relevance: 9.1, APIs: 6, Instructions: 97COMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00790940 Relevance: 9.1, APIs: 6, Instructions: 52COMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007AAD50 Relevance: 9.0, APIs: 6, Instructions: 50COMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00780840 Relevance: 9.0, APIs: 6, Instructions: 47windowsynchronizationCOMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007B0B90 Relevance: 9.0, APIs: 2, Strings: 3, Instructions: 226threadCOMMON
APIs |
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0079CE00 Relevance: 7.7, APIs: 5, Instructions: 173COMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00788F90 Relevance: 7.6, APIs: 5, Instructions: 122COMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007B2040 Relevance: 7.6, APIs: 5, Instructions: 112COMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007DC7B0 Relevance: 7.6, APIs: 5, Instructions: 105windowsleepsynchronizationCOMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0077A070 Relevance: 7.6, APIs: 5, Instructions: 101synchronizationnetworkCOMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007B0A20 Relevance: 7.6, APIs: 5, Instructions: 101COMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00848985 Relevance: 7.6, APIs: 5, Instructions: 92COMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007AAC10 Relevance: 7.6, APIs: 5, Instructions: 85COMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0077A050 Relevance: 7.6, APIs: 5, Instructions: 71networkCOMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007CA4D0 Relevance: 7.6, APIs: 5, Instructions: 55windowCOMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007A07C0 Relevance: 7.6, APIs: 5, Instructions: 55networkCOMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00788C40 Relevance: 7.5, APIs: 5, Instructions: 42windowsynchronizationCOMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0078ECA0 Relevance: 7.5, APIs: 5, Instructions: 39COMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007A08B0 Relevance: 7.5, APIs: 5, Instructions: 30COMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007A0C30 Relevance: 7.5, APIs: 5, Instructions: 30COMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
|
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007C2FA0 Relevance: 6.4, APIs: 4, Instructions: 432COMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007C2B60 Relevance: 6.4, APIs: 4, Instructions: 360COMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00794950 Relevance: 6.1, APIs: 4, Instructions: 143COMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00932016 Relevance: 6.1, APIs: 4, Instructions: 136COMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007A4580 Relevance: 6.1, APIs: 4, Instructions: 124COMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0078E3A0 Relevance: 6.1, APIs: 4, Instructions: 103COMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00788300 Relevance: 6.1, APIs: 4, Instructions: 101COMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0078E6A0 Relevance: 6.1, APIs: 4, Instructions: 91networkCOMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00814BA0 Relevance: 6.1, APIs: 4, Instructions: 91windowCOMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00780290 Relevance: 6.1, APIs: 4, Instructions: 89COMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007F6B20 Relevance: 6.1, APIs: 4, Instructions: 76COMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007C8BA0 Relevance: 6.1, APIs: 4, Instructions: 62windowCOMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0078C600 Relevance: 6.1, APIs: 4, Instructions: 56COMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0078EA90 Relevance: 6.1, APIs: 4, Instructions: 55networkCOMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007A0340 Relevance: 6.1, APIs: 4, Instructions: 54networkCOMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0078E4C0 Relevance: 6.1, APIs: 4, Instructions: 54networkCOMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007BC4F0 Relevance: 6.1, APIs: 4, Instructions: 51COMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0080A323 Relevance: 6.0, APIs: 4, Instructions: 43COMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007820E0 Relevance: 6.0, APIs: 4, Instructions: 42COMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0081627F Relevance: 6.0, APIs: 4, Instructions: 41networkCOMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0079E430 Relevance: 6.0, APIs: 4, Instructions: 41COMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007B4720 Relevance: 6.0, APIs: 4, Instructions: 40networkCOMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007B4930 Relevance: 6.0, APIs: 4, Instructions: 40networkCOMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 007AAEF0 Relevance: 6.0, APIs: 4, Instructions: 38COMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0079C6C0 Relevance: 6.0, APIs: 4, Instructions: 36networkCOMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00778C60 Relevance: 5.3, APIs: 2, Strings: 1, Instructions: 67networkCOMMON
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0078C2A0 Relevance: 5.3, APIs: 2, Strings: 1, Instructions: 58networkCOMMON
APIs |
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00790130 Relevance: 5.3, APIs: 2, Strings: 1, Instructions: 57networkCOMMON
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00816A5E Relevance: 5.3, APIs: 2, Strings: 1, Instructions: 41networkCOMMON
APIs |
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |