Try VMRay Platform
Malicious
Classifications

Downloader Injector

Threat Names

Mal/HTMLGen-A Mal/Generic-S Pikabot CryptOne

Remarks (2/2)

(0x02000009): DLL files normally need to be submitted with an appropriate loader. Analysis result may be incomplete if an appropriate loader was not submitted.

(0x0200000E): The overall sleep time of all monitored processes was truncated from "43 seconds" to "10 seconds" to reveal dormant functionality.

Filters:
File Name Category Type Verdict Actions
C:\Users\RDHJ0C~1\Desktop\d404c2acf54b6ca5f5bb4739d99592ef.virus.dll Sample File Binary
Malicious
»
Also Known As C:\Users\RDhJ0CNFevzX\Desktop\d404c2acf54b6ca5f5bb4739d99592ef.virus.dll (VM File, Sample File)
MIME Type application/vnd.microsoft.portable-executable
File Size 935.50 KB
MD5 d404c2acf54b6ca5f5bb4739d99592ef Copy to Clipboard
SHA1 59784a1f127d9afc73751ca7248ddf3cb8db3e03 Copy to Clipboard
SHA256 20189932a66a55157b14df10855bb860a0d0f03822ba1c71b757fd10a6076099 Copy to Clipboard
SSDeep 12288:2qOfdYcwbu2jfQXSw7iDDVScHBsgVitfm5tltS2cevoXi1I09sjjGEzU3A:Vs/ONf1w7sw8s9whtSVCmWs/GEgA Copy to Clipboard
ImpHash 73837ca05fbd21ac4fa03cb1cef8706d Copy to Clipboard
File Reputation Information
»
Verdict
Malicious
Names Mal/Generic-S
PE Information
»
Image Base 0x00400000
Entry Point 0x00496D90
Size Of Code 0x00095E00
Size Of Initialized Data 0x00053C00
File Type IMAGE_FILE_DLL
Subsystem IMAGE_SUBSYSTEM_WINDOWS_GUI
Machine Type IMAGE_FILE_MACHINE_I386
Compile Timestamp 1992-06-19 22:22 (UTC)
Sections (6)
»
Name Virtual Address Virtual Size Raw Data Size Raw Data Offset Flags Entropy
CODE 0x00401000 0x00095DB0 0x00095E00 0x00000400 IMAGE_SCN_CNT_CODE, IMAGE_SCN_MEM_EXECUTE, IMAGE_SCN_MEM_READ 6.58
DATA 0x00497000 0x00002774 0x00002800 0x00096200 IMAGE_SCN_CNT_INITIALIZED_DATA, IMAGE_SCN_MEM_READ, IMAGE_SCN_MEM_WRITE 4.9
BSS 0x0049A000 0x00000CF5 0x00000000 0x00098A00 IMAGE_SCN_MEM_READ, IMAGE_SCN_MEM_WRITE 0.0
.idata 0x0049B000 0x00002202 0x00002400 0x00098A00 IMAGE_SCN_CNT_INITIALIZED_DATA, IMAGE_SCN_MEM_READ, IMAGE_SCN_MEM_WRITE 4.88
.reloc 0x0049E000 0x0000B7FC 0x0000B800 0x0009AE00 IMAGE_SCN_CNT_INITIALIZED_DATA, IMAGE_SCN_MEM_SHARED, IMAGE_SCN_MEM_READ 6.66
.rsrc 0x004AA000 0x00043800 0x00043800 0x000A6600 IMAGE_SCN_CNT_INITIALIZED_DATA, IMAGE_SCN_MEM_SHARED, IMAGE_SCN_MEM_READ 7.02
Imports (15)
»
kernel32.dll (34)
»
API Name Ordinal IAT Address Thunk RVA Thunk Offset Hint
DeleteCriticalSection - 0x0049B140 0x0009B140 0x00098B40 0x00000000
LeaveCriticalSection - 0x0049B144 0x0009B144 0x00098B44 0x00000000
EnterCriticalSection - 0x0049B148 0x0009B148 0x00098B48 0x00000000
InitializeCriticalSection - 0x0049B14C 0x0009B14C 0x00098B4C 0x00000000
VirtualFree - 0x0049B150 0x0009B150 0x00098B50 0x00000000
VirtualAlloc - 0x0049B154 0x0009B154 0x00098B54 0x00000000
LocalFree - 0x0049B158 0x0009B158 0x00098B58 0x00000000
LocalAlloc - 0x0049B15C 0x0009B15C 0x00098B5C 0x00000000
GetVersion - 0x0049B160 0x0009B160 0x00098B60 0x00000000
GetCurrentThreadId - 0x0049B164 0x0009B164 0x00098B64 0x00000000
InterlockedDecrement - 0x0049B168 0x0009B168 0x00098B68 0x00000000
InterlockedIncrement - 0x0049B16C 0x0009B16C 0x00098B6C 0x00000000
VirtualQuery - 0x0049B170 0x0009B170 0x00098B70 0x00000000
WideCharToMultiByte - 0x0049B174 0x0009B174 0x00098B74 0x00000000
MultiByteToWideChar - 0x0049B178 0x0009B178 0x00098B78 0x00000000
lstrlenA - 0x0049B17C 0x0009B17C 0x00098B7C 0x00000000
lstrcpynA - 0x0049B180 0x0009B180 0x00098B80 0x00000000
LoadLibraryExA - 0x0049B184 0x0009B184 0x00098B84 0x00000000
GetThreadLocale - 0x0049B188 0x0009B188 0x00098B88 0x00000000
GetStartupInfoA - 0x0049B18C 0x0009B18C 0x00098B8C 0x00000000
GetProcAddress - 0x0049B190 0x0009B190 0x00098B90 0x00000000
GetModuleHandleA - 0x0049B194 0x0009B194 0x00098B94 0x00000000
GetModuleFileNameA - 0x0049B198 0x0009B198 0x00098B98 0x00000000
GetLocaleInfoA - 0x0049B19C 0x0009B19C 0x00098B9C 0x00000000
GetCommandLineA - 0x0049B1A0 0x0009B1A0 0x00098BA0 0x00000000
FreeLibrary - 0x0049B1A4 0x0009B1A4 0x00098BA4 0x00000000
FindFirstFileA - 0x0049B1A8 0x0009B1A8 0x00098BA8 0x00000000
FindClose - 0x0049B1AC 0x0009B1AC 0x00098BAC 0x00000000
ExitProcess - 0x0049B1B0 0x0009B1B0 0x00098BB0 0x00000000
WriteFile - 0x0049B1B4 0x0009B1B4 0x00098BB4 0x00000000
UnhandledExceptionFilter - 0x0049B1B8 0x0009B1B8 0x00098BB8 0x00000000
RtlUnwind - 0x0049B1BC 0x0009B1BC 0x00098BBC 0x00000000
RaiseException - 0x0049B1C0 0x0009B1C0 0x00098BC0 0x00000000
GetStdHandle - 0x0049B1C4 0x0009B1C4 0x00098BC4 0x00000000
user32.dll (4)
»
API Name Ordinal IAT Address Thunk RVA Thunk Offset Hint
GetKeyboardType - 0x0049B1CC 0x0009B1CC 0x00098BCC 0x00000000
LoadStringA - 0x0049B1D0 0x0009B1D0 0x00098BD0 0x00000000
MessageBoxA - 0x0049B1D4 0x0009B1D4 0x00098BD4 0x00000000
CharNextA - 0x0049B1D8 0x0009B1D8 0x00098BD8 0x00000000
advapi32.dll (3)
»
API Name Ordinal IAT Address Thunk RVA Thunk Offset Hint
RegQueryValueExA - 0x0049B1E0 0x0009B1E0 0x00098BE0 0x00000000
RegOpenKeyExA - 0x0049B1E4 0x0009B1E4 0x00098BE4 0x00000000
RegCloseKey - 0x0049B1E8 0x0009B1E8 0x00098BE8 0x00000000
oleaut32.dll (3)
»
API Name Ordinal IAT Address Thunk RVA Thunk Offset Hint
SysFreeString - 0x0049B1F0 0x0009B1F0 0x00098BF0 0x00000000
SysReAllocStringLen - 0x0049B1F4 0x0009B1F4 0x00098BF4 0x00000000
SysAllocStringLen - 0x0049B1F8 0x0009B1F8 0x00098BF8 0x00000000
kernel32.dll (6)
»
API Name Ordinal IAT Address Thunk RVA Thunk Offset Hint
TlsSetValue - 0x0049B200 0x0009B200 0x00098C00 0x00000000
TlsGetValue - 0x0049B204 0x0009B204 0x00098C04 0x00000000
TlsFree - 0x0049B208 0x0009B208 0x00098C08 0x00000000
TlsAlloc - 0x0049B20C 0x0009B20C 0x00098C0C 0x00000000
LocalFree - 0x0049B210 0x0009B210 0x00098C10 0x00000000
LocalAlloc - 0x0049B214 0x0009B214 0x00098C14 0x00000000
advapi32.dll (3)
»
API Name Ordinal IAT Address Thunk RVA Thunk Offset Hint
RegQueryValueExA - 0x0049B21C 0x0009B21C 0x00098C1C 0x00000000
RegOpenKeyExA - 0x0049B220 0x0009B220 0x00098C20 0x00000000
RegCloseKey - 0x0049B224 0x0009B224 0x00098C24 0x00000000
kernel32.dll (74)
»
API Name Ordinal IAT Address Thunk RVA Thunk Offset Hint
lstrcpyA - 0x0049B22C 0x0009B22C 0x00098C2C 0x00000000
WriteFile - 0x0049B230 0x0009B230 0x00098C30 0x00000000
WaitForSingleObject - 0x0049B234 0x0009B234 0x00098C34 0x00000000
VirtualQuery - 0x0049B238 0x0009B238 0x00098C38 0x00000000
VirtualAlloc - 0x0049B23C 0x0009B23C 0x00098C3C 0x00000000
Sleep - 0x0049B240 0x0009B240 0x00098C40 0x00000000
SizeofResource - 0x0049B244 0x0009B244 0x00098C44 0x00000000
SetThreadLocale - 0x0049B248 0x0009B248 0x00098C48 0x00000000
SetFilePointer - 0x0049B24C 0x0009B24C 0x00098C4C 0x00000000
SetEvent - 0x0049B250 0x0009B250 0x00098C50 0x00000000
SetErrorMode - 0x0049B254 0x0009B254 0x00098C54 0x00000000
SetEndOfFile - 0x0049B258 0x0009B258 0x00098C58 0x00000000
SearchPathA - 0x0049B25C 0x0009B25C 0x00098C5C 0x00000000
ResetEvent - 0x0049B260 0x0009B260 0x00098C60 0x00000000
ReleaseMutex - 0x0049B264 0x0009B264 0x00098C64 0x00000000
ReadFile - 0x0049B268 0x0009B268 0x00098C68 0x00000000
OpenFileMappingA - 0x0049B26C 0x0009B26C 0x00098C6C 0x00000000
MultiByteToWideChar - 0x0049B270 0x0009B270 0x00098C70 0x00000000
MulDiv - 0x0049B274 0x0009B274 0x00098C74 0x00000000
LockResource - 0x0049B278 0x0009B278 0x00098C78 0x00000000
LoadResource - 0x0049B27C 0x0009B27C 0x00098C7C 0x00000000
LoadLibraryA - 0x0049B280 0x0009B280 0x00098C80 0x00000000
LeaveCriticalSection - 0x0049B284 0x0009B284 0x00098C84 0x00000000
IsDBCSLeadByte - 0x0049B288 0x0009B288 0x00098C88 0x00000000
InitializeCriticalSection - 0x0049B28C 0x0009B28C 0x00098C8C 0x00000000
GlobalUnlock - 0x0049B290 0x0009B290 0x00098C90 0x00000000
GlobalReAlloc - 0x0049B294 0x0009B294 0x00098C94 0x00000000
GlobalHandle - 0x0049B298 0x0009B298 0x00098C98 0x00000000
GlobalLock - 0x0049B29C 0x0009B29C 0x00098C9C 0x00000000
GlobalFree - 0x0049B2A0 0x0009B2A0 0x00098CA0 0x00000000
GlobalFindAtomA - 0x0049B2A4 0x0009B2A4 0x00098CA4 0x00000000
GlobalDeleteAtom - 0x0049B2A8 0x0009B2A8 0x00098CA8 0x00000000
GlobalAlloc - 0x0049B2AC 0x0009B2AC 0x00098CAC 0x00000000
GlobalAddAtomA - 0x0049B2B0 0x0009B2B0 0x00098CB0 0x00000000
GetVersionExA - 0x0049B2B4 0x0009B2B4 0x00098CB4 0x00000000
GetVersion - 0x0049B2B8 0x0009B2B8 0x00098CB8 0x00000000
GetTickCount - 0x0049B2BC 0x0009B2BC 0x00098CBC 0x00000000
GetThreadLocale - 0x0049B2C0 0x0009B2C0 0x00098CC0 0x00000000
GetSystemInfo - 0x0049B2C4 0x0009B2C4 0x00098CC4 0x00000000
GetStringTypeExA - 0x0049B2C8 0x0009B2C8 0x00098CC8 0x00000000
GetStdHandle - 0x0049B2CC 0x0009B2CC 0x00098CCC 0x00000000
GetProcAddress - 0x0049B2D0 0x0009B2D0 0x00098CD0 0x00000000
GetModuleHandleA - 0x0049B2D4 0x0009B2D4 0x00098CD4 0x00000000
GetModuleFileNameA - 0x0049B2D8 0x0009B2D8 0x00098CD8 0x00000000
GetLocaleInfoA - 0x0049B2DC 0x0009B2DC 0x00098CDC 0x00000000
GetLocalTime - 0x0049B2E0 0x0009B2E0 0x00098CE0 0x00000000
GetLastError - 0x0049B2E4 0x0009B2E4 0x00098CE4 0x00000000
GetFullPathNameA - 0x0049B2E8 0x0009B2E8 0x00098CE8 0x00000000
GetDiskFreeSpaceA - 0x0049B2EC 0x0009B2EC 0x00098CEC 0x00000000
GetDateFormatA - 0x0049B2F0 0x0009B2F0 0x00098CF0 0x00000000
GetCurrentThreadId - 0x0049B2F4 0x0009B2F4 0x00098CF4 0x00000000
GetCurrentProcessId - 0x0049B2F8 0x0009B2F8 0x00098CF8 0x00000000
GetCurrentDirectoryA - 0x0049B2FC 0x0009B2FC 0x00098CFC 0x00000000
GetCPInfo - 0x0049B300 0x0009B300 0x00098D00 0x00000000
GetACP - 0x0049B304 0x0009B304 0x00098D04 0x00000000
FreeResource - 0x0049B308 0x0009B308 0x00098D08 0x00000000
InterlockedIncrement - 0x0049B30C 0x0009B30C 0x00098D0C 0x00000000
InterlockedExchange - 0x0049B310 0x0009B310 0x00098D10 0x00000000
InterlockedDecrement - 0x0049B314 0x0009B314 0x00098D14 0x00000000
FreeLibrary - 0x0049B318 0x0009B318 0x00098D18 0x00000000
FormatMessageA - 0x0049B31C 0x0009B31C 0x00098D1C 0x00000000
FindResourceA - 0x0049B320 0x0009B320 0x00098D20 0x00000000
FindFirstFileA - 0x0049B324 0x0009B324 0x00098D24 0x00000000
FindClose - 0x0049B328 0x0009B328 0x00098D28 0x00000000
FatalAppExitA - 0x0049B32C 0x0009B32C 0x00098D2C 0x00000000
EnumCalendarInfoA - 0x0049B330 0x0009B330 0x00098D30 0x00000000
EnterCriticalSection - 0x0049B334 0x0009B334 0x00098D34 0x00000000
DeleteCriticalSection - 0x0049B338 0x0009B338 0x00098D38 0x00000000
CreateThread - 0x0049B33C 0x0009B33C 0x00098D3C 0x00000000
CreateMutexA - 0x0049B340 0x0009B340 0x00098D40 0x00000000
CreateFileA - 0x0049B344 0x0009B344 0x00098D44 0x00000000
CreateEventA - 0x0049B348 0x0009B348 0x00098D48 0x00000000
CompareStringA - 0x0049B34C 0x0009B34C 0x00098D4C 0x00000000
CloseHandle - 0x0049B350 0x0009B350 0x00098D50 0x00000000
version.dll (3)
»
API Name Ordinal IAT Address Thunk RVA Thunk Offset Hint
VerQueryValueA - 0x0049B358 0x0009B358 0x00098D58 0x00000000
GetFileVersionInfoSizeA - 0x0049B35C 0x0009B35C 0x00098D5C 0x00000000
GetFileVersionInfoA - 0x0049B360 0x0009B360 0x00098D60 0x00000000
gdi32.dll (54)
»
API Name Ordinal IAT Address Thunk RVA Thunk Offset Hint
UnrealizeObject - 0x0049B368 0x0009B368 0x00098D68 0x00000000
StretchBlt - 0x0049B36C 0x0009B36C 0x00098D6C 0x00000000
SetWindowOrgEx - 0x0049B370 0x0009B370 0x00098D70 0x00000000
SetViewportOrgEx - 0x0049B374 0x0009B374 0x00098D74 0x00000000
SetTextColor - 0x0049B378 0x0009B378 0x00098D78 0x00000000
SetStretchBltMode - 0x0049B37C 0x0009B37C 0x00098D7C 0x00000000
SetROP2 - 0x0049B380 0x0009B380 0x00098D80 0x00000000
SetPixel - 0x0049B384 0x0009B384 0x00098D84 0x00000000
SetDIBColorTable - 0x0049B388 0x0009B388 0x00098D88 0x00000000
SetBrushOrgEx - 0x0049B38C 0x0009B38C 0x00098D8C 0x00000000
SetBkMode - 0x0049B390 0x0009B390 0x00098D90 0x00000000
SetBkColor - 0x0049B394 0x0009B394 0x00098D94 0x00000000
SelectPalette - 0x0049B398 0x0009B398 0x00098D98 0x00000000
SelectObject - 0x0049B39C 0x0009B39C 0x00098D9C 0x00000000
SaveDC - 0x0049B3A0 0x0009B3A0 0x00098DA0 0x00000000
RestoreDC - 0x0049B3A4 0x0009B3A4 0x00098DA4 0x00000000
RectVisible - 0x0049B3A8 0x0009B3A8 0x00098DA8 0x00000000
RealizePalette - 0x0049B3AC 0x0009B3AC 0x00098DAC 0x00000000
PatBlt - 0x0049B3B0 0x0009B3B0 0x00098DB0 0x00000000
MoveToEx - 0x0049B3B4 0x0009B3B4 0x00098DB4 0x00000000
MaskBlt - 0x0049B3B8 0x0009B3B8 0x00098DB8 0x00000000
LineTo - 0x0049B3BC 0x0009B3BC 0x00098DBC 0x00000000
IntersectClipRect - 0x0049B3C0 0x0009B3C0 0x00098DC0 0x00000000
GetWindowOrgEx - 0x0049B3C4 0x0009B3C4 0x00098DC4 0x00000000
GetTextMetricsA - 0x0049B3C8 0x0009B3C8 0x00098DC8 0x00000000
GetTextExtentPoint32A - 0x0049B3CC 0x0009B3CC 0x00098DCC 0x00000000
GetSystemPaletteEntries - 0x0049B3D0 0x0009B3D0 0x00098DD0 0x00000000
GetStockObject - 0x0049B3D4 0x0009B3D4 0x00098DD4 0x00000000
GetPixel - 0x0049B3D8 0x0009B3D8 0x00098DD8 0x00000000
GetPaletteEntries - 0x0049B3DC 0x0009B3DC 0x00098DDC 0x00000000
GetObjectA - 0x0049B3E0 0x0009B3E0 0x00098DE0 0x00000000
GetDeviceCaps - 0x0049B3E4 0x0009B3E4 0x00098DE4 0x00000000
GetDIBits - 0x0049B3E8 0x0009B3E8 0x00098DE8 0x00000000
GetDIBColorTable - 0x0049B3EC 0x0009B3EC 0x00098DEC 0x00000000
GetDCOrgEx - 0x0049B3F0 0x0009B3F0 0x00098DF0 0x00000000
GetCurrentPositionEx - 0x0049B3F4 0x0009B3F4 0x00098DF4 0x00000000
GetClipBox - 0x0049B3F8 0x0009B3F8 0x00098DF8 0x00000000
GetBrushOrgEx - 0x0049B3FC 0x0009B3FC 0x00098DFC 0x00000000
GetBitmapBits - 0x0049B400 0x0009B400 0x00098E00 0x00000000
ExcludeClipRect - 0x0049B404 0x0009B404 0x00098E04 0x00000000
DeleteObject - 0x0049B408 0x0009B408 0x00098E08 0x00000000
DeleteDC - 0x0049B40C 0x0009B40C 0x00098E0C 0x00000000
CreateSolidBrush - 0x0049B410 0x0009B410 0x00098E10 0x00000000
CreatePenIndirect - 0x0049B414 0x0009B414 0x00098E14 0x00000000
CreatePalette - 0x0049B418 0x0009B418 0x00098E18 0x00000000
CreateHalftonePalette - 0x0049B41C 0x0009B41C 0x00098E1C 0x00000000
CreateFontIndirectA - 0x0049B420 0x0009B420 0x00098E20 0x00000000
CreateDIBitmap - 0x0049B424 0x0009B424 0x00098E24 0x00000000
CreateDIBSection - 0x0049B428 0x0009B428 0x00098E28 0x00000000
CreateCompatibleDC - 0x0049B42C 0x0009B42C 0x00098E2C 0x00000000
CreateCompatibleBitmap - 0x0049B430 0x0009B430 0x00098E30 0x00000000
CreateBrushIndirect - 0x0049B434 0x0009B434 0x00098E34 0x00000000
CreateBitmap - 0x0049B438 0x0009B438 0x00098E38 0x00000000
BitBlt - 0x0049B43C 0x0009B43C 0x00098E3C 0x00000000
user32.dll (158)
»
API Name Ordinal IAT Address Thunk RVA Thunk Offset Hint
CreateWindowExA - 0x0049B444 0x0009B444 0x00098E44 0x00000000
WindowFromPoint - 0x0049B448 0x0009B448 0x00098E48 0x00000000
WinHelpA - 0x0049B44C 0x0009B44C 0x00098E4C 0x00000000
WaitMessage - 0x0049B450 0x0009B450 0x00098E50 0x00000000
UpdateWindow - 0x0049B454 0x0009B454 0x00098E54 0x00000000
UnregisterClassA - 0x0049B458 0x0009B458 0x00098E58 0x00000000
UnhookWindowsHookEx - 0x0049B45C 0x0009B45C 0x00098E5C 0x00000000
TranslateMessage - 0x0049B460 0x0009B460 0x00098E60 0x00000000
TranslateMDISysAccel - 0x0049B464 0x0009B464 0x00098E64 0x00000000
TrackPopupMenu - 0x0049B468 0x0009B468 0x00098E68 0x00000000
SystemParametersInfoA - 0x0049B46C 0x0009B46C 0x00098E6C 0x00000000
ShowWindow - 0x0049B470 0x0009B470 0x00098E70 0x00000000
ShowScrollBar - 0x0049B474 0x0009B474 0x00098E74 0x00000000
ShowOwnedPopups - 0x0049B478 0x0009B478 0x00098E78 0x00000000
ShowCursor - 0x0049B47C 0x0009B47C 0x00098E7C 0x00000000
SetWindowsHookExA - 0x0049B480 0x0009B480 0x00098E80 0x00000000
SetWindowPos - 0x0049B484 0x0009B484 0x00098E84 0x00000000
SetWindowPlacement - 0x0049B488 0x0009B488 0x00098E88 0x00000000
SetWindowLongA - 0x0049B48C 0x0009B48C 0x00098E8C 0x00000000
SetTimer - 0x0049B490 0x0009B490 0x00098E90 0x00000000
SetScrollRange - 0x0049B494 0x0009B494 0x00098E94 0x00000000
SetScrollPos - 0x0049B498 0x0009B498 0x00098E98 0x00000000
SetScrollInfo - 0x0049B49C 0x0009B49C 0x00098E9C 0x00000000
SetRect - 0x0049B4A0 0x0009B4A0 0x00098EA0 0x00000000
SetPropA - 0x0049B4A4 0x0009B4A4 0x00098EA4 0x00000000
SetParent - 0x0049B4A8 0x0009B4A8 0x00098EA8 0x00000000
SetMenuItemInfoA - 0x0049B4AC 0x0009B4AC 0x00098EAC 0x00000000
SetMenu - 0x0049B4B0 0x0009B4B0 0x00098EB0 0x00000000
SetForegroundWindow - 0x0049B4B4 0x0009B4B4 0x00098EB4 0x00000000
SetFocus - 0x0049B4B8 0x0009B4B8 0x00098EB8 0x00000000
SetCursor - 0x0049B4BC 0x0009B4BC 0x00098EBC 0x00000000
SetClassLongA - 0x0049B4C0 0x0009B4C0 0x00098EC0 0x00000000
SetCapture - 0x0049B4C4 0x0009B4C4 0x00098EC4 0x00000000
SetActiveWindow - 0x0049B4C8 0x0009B4C8 0x00098EC8 0x00000000
SendMessageA - 0x0049B4CC 0x0009B4CC 0x00098ECC 0x00000000
ScrollWindow - 0x0049B4D0 0x0009B4D0 0x00098ED0 0x00000000
ScreenToClient - 0x0049B4D4 0x0009B4D4 0x00098ED4 0x00000000
RemovePropA - 0x0049B4D8 0x0009B4D8 0x00098ED8 0x00000000
RemoveMenu - 0x0049B4DC 0x0009B4DC 0x00098EDC 0x00000000
ReleaseDC - 0x0049B4E0 0x0009B4E0 0x00098EE0 0x00000000
ReleaseCapture - 0x0049B4E4 0x0009B4E4 0x00098EE4 0x00000000
RegisterWindowMessageA - 0x0049B4E8 0x0009B4E8 0x00098EE8 0x00000000
RegisterClipboardFormatA - 0x0049B4EC 0x0009B4EC 0x00098EEC 0x00000000
RegisterClassA - 0x0049B4F0 0x0009B4F0 0x00098EF0 0x00000000
RedrawWindow - 0x0049B4F4 0x0009B4F4 0x00098EF4 0x00000000
PtInRect - 0x0049B4F8 0x0009B4F8 0x00098EF8 0x00000000
PostQuitMessage - 0x0049B4FC 0x0009B4FC 0x00098EFC 0x00000000
PostMessageA - 0x0049B500 0x0009B500 0x00098F00 0x00000000
PeekMessageA - 0x0049B504 0x0009B504 0x00098F04 0x00000000
OffsetRect - 0x0049B508 0x0009B508 0x00098F08 0x00000000
OemToCharBuffA - 0x0049B50C 0x0009B50C 0x00098F0C 0x00000000
OemToCharA - 0x0049B510 0x0009B510 0x00098F10 0x00000000
MessageBoxA - 0x0049B514 0x0009B514 0x00098F14 0x00000000
MapWindowPoints - 0x0049B518 0x0009B518 0x00098F18 0x00000000
MapVirtualKeyA - 0x0049B51C 0x0009B51C 0x00098F1C 0x00000000
LoadStringA - 0x0049B520 0x0009B520 0x00098F20 0x00000000
LoadKeyboardLayoutA - 0x0049B524 0x0009B524 0x00098F24 0x00000000
LoadIconA - 0x0049B528 0x0009B528 0x00098F28 0x00000000
LoadCursorA - 0x0049B52C 0x0009B52C 0x00098F2C 0x00000000
LoadBitmapA - 0x0049B530 0x0009B530 0x00098F30 0x00000000
KillTimer - 0x0049B534 0x0009B534 0x00098F34 0x00000000
IsZoomed - 0x0049B538 0x0009B538 0x00098F38 0x00000000
IsWindowVisible - 0x0049B53C 0x0009B53C 0x00098F3C 0x00000000
IsWindowEnabled - 0x0049B540 0x0009B540 0x00098F40 0x00000000
IsWindow - 0x0049B544 0x0009B544 0x00098F44 0x00000000
IsRectEmpty - 0x0049B548 0x0009B548 0x00098F48 0x00000000
IsIconic - 0x0049B54C 0x0009B54C 0x00098F4C 0x00000000
IsDialogMessageA - 0x0049B550 0x0009B550 0x00098F50 0x00000000
IsChild - 0x0049B554 0x0009B554 0x00098F54 0x00000000
InvalidateRect - 0x0049B558 0x0009B558 0x00098F58 0x00000000
IntersectRect - 0x0049B55C 0x0009B55C 0x00098F5C 0x00000000
InsertMenuItemA - 0x0049B560 0x0009B560 0x00098F60 0x00000000
InsertMenuA - 0x0049B564 0x0009B564 0x00098F64 0x00000000
InflateRect - 0x0049B568 0x0009B568 0x00098F68 0x00000000
GetWindowThreadProcessId - 0x0049B56C 0x0009B56C 0x00098F6C 0x00000000
GetWindowTextA - 0x0049B570 0x0009B570 0x00098F70 0x00000000
GetWindowRect - 0x0049B574 0x0009B574 0x00098F74 0x00000000
GetWindowPlacement - 0x0049B578 0x0009B578 0x00098F78 0x00000000
GetWindowLongA - 0x0049B57C 0x0009B57C 0x00098F7C 0x00000000
GetWindowDC - 0x0049B580 0x0009B580 0x00098F80 0x00000000
GetTopWindow - 0x0049B584 0x0009B584 0x00098F84 0x00000000
GetSystemMetrics - 0x0049B588 0x0009B588 0x00098F88 0x00000000
GetSystemMenu - 0x0049B58C 0x0009B58C 0x00098F8C 0x00000000
GetSysColorBrush - 0x0049B590 0x0009B590 0x00098F90 0x00000000
GetSysColor - 0x0049B594 0x0009B594 0x00098F94 0x00000000
GetSubMenu - 0x0049B598 0x0009B598 0x00098F98 0x00000000
GetScrollRange - 0x0049B59C 0x0009B59C 0x00098F9C 0x00000000
GetScrollPos - 0x0049B5A0 0x0009B5A0 0x00098FA0 0x00000000
GetScrollInfo - 0x0049B5A4 0x0009B5A4 0x00098FA4 0x00000000
GetPropA - 0x0049B5A8 0x0009B5A8 0x00098FA8 0x00000000
GetParent - 0x0049B5AC 0x0009B5AC 0x00098FAC 0x00000000
GetWindow - 0x0049B5B0 0x0009B5B0 0x00098FB0 0x00000000
GetMenuStringA - 0x0049B5B4 0x0009B5B4 0x00098FB4 0x00000000
GetMenuState - 0x0049B5B8 0x0009B5B8 0x00098FB8 0x00000000
GetMenuItemInfoA - 0x0049B5BC 0x0009B5BC 0x00098FBC 0x00000000
GetMenuItemID - 0x0049B5C0 0x0009B5C0 0x00098FC0 0x00000000
GetMenuItemCount - 0x0049B5C4 0x0009B5C4 0x00098FC4 0x00000000
GetMenu - 0x0049B5C8 0x0009B5C8 0x00098FC8 0x00000000
GetLastActivePopup - 0x0049B5CC 0x0009B5CC 0x00098FCC 0x00000000
GetKeyboardState - 0x0049B5D0 0x0009B5D0 0x00098FD0 0x00000000
GetKeyboardLayoutList - 0x0049B5D4 0x0009B5D4 0x00098FD4 0x00000000
GetKeyboardLayout - 0x0049B5D8 0x0009B5D8 0x00098FD8 0x00000000
GetKeyState - 0x0049B5DC 0x0009B5DC 0x00098FDC 0x00000000
GetKeyNameTextA - 0x0049B5E0 0x0009B5E0 0x00098FE0 0x00000000
GetIconInfo - 0x0049B5E4 0x0009B5E4 0x00098FE4 0x00000000
GetForegroundWindow - 0x0049B5E8 0x0009B5E8 0x00098FE8 0x00000000
GetFocus - 0x0049B5EC 0x0009B5EC 0x00098FEC 0x00000000
GetDlgCtrlID - 0x0049B5F0 0x0009B5F0 0x00098FF0 0x00000000
GetDesktopWindow - 0x0049B5F4 0x0009B5F4 0x00098FF4 0x00000000
GetDCEx - 0x0049B5F8 0x0009B5F8 0x00098FF8 0x00000000
GetDC - 0x0049B5FC 0x0009B5FC 0x00098FFC 0x00000000
GetCursorPos - 0x0049B600 0x0009B600 0x00099000 0x00000000
GetCursor - 0x0049B604 0x0009B604 0x00099004 0x00000000
GetClientRect - 0x0049B608 0x0009B608 0x00099008 0x00000000
GetClassNameA - 0x0049B60C 0x0009B60C 0x0009900C 0x00000000
GetClassInfoA - 0x0049B610 0x0009B610 0x00099010 0x00000000
GetCapture - 0x0049B614 0x0009B614 0x00099014 0x00000000
GetActiveWindow - 0x0049B618 0x0009B618 0x00099018 0x00000000
FrameRect - 0x0049B61C 0x0009B61C 0x0009901C 0x00000000
FindWindowA - 0x0049B620 0x0009B620 0x00099020 0x00000000
FillRect - 0x0049B624 0x0009B624 0x00099024 0x00000000
EqualRect - 0x0049B628 0x0009B628 0x00099028 0x00000000
EnumWindows - 0x0049B62C 0x0009B62C 0x0009902C 0x00000000
EnumThreadWindows - 0x0049B630 0x0009B630 0x00099030 0x00000000
EndPaint - 0x0049B634 0x0009B634 0x00099034 0x00000000
EnableWindow - 0x0049B638 0x0009B638 0x00099038 0x00000000
EnableScrollBar - 0x0049B63C 0x0009B63C 0x0009903C 0x00000000
EnableMenuItem - 0x0049B640 0x0009B640 0x00099040 0x00000000
DrawTextA - 0x0049B644 0x0009B644 0x00099044 0x00000000
DrawMenuBar - 0x0049B648 0x0009B648 0x00099048 0x00000000
DrawIconEx - 0x0049B64C 0x0009B64C 0x0009904C 0x00000000
DrawIcon - 0x0049B650 0x0009B650 0x00099050 0x00000000
DrawFrameControl - 0x0049B654 0x0009B654 0x00099054 0x00000000
DrawEdge - 0x0049B658 0x0009B658 0x00099058 0x00000000
DispatchMessageA - 0x0049B65C 0x0009B65C 0x0009905C 0x00000000
DestroyWindow - 0x0049B660 0x0009B660 0x00099060 0x00000000
DestroyMenu - 0x0049B664 0x0009B664 0x00099064 0x00000000
DestroyIcon - 0x0049B668 0x0009B668 0x00099068 0x00000000
DestroyCursor - 0x0049B66C 0x0009B66C 0x0009906C 0x00000000
DeleteMenu - 0x0049B670 0x0009B670 0x00099070 0x00000000
DefWindowProcA - 0x0049B674 0x0009B674 0x00099074 0x00000000
DefMDIChildProcA - 0x0049B678 0x0009B678 0x00099078 0x00000000
DefFrameProcA - 0x0049B67C 0x0009B67C 0x0009907C 0x00000000
CreatePopupMenu - 0x0049B680 0x0009B680 0x00099080 0x00000000
CreateMenu - 0x0049B684 0x0009B684 0x00099084 0x00000000
CreateIcon - 0x0049B688 0x0009B688 0x00099088 0x00000000
ClientToScreen - 0x0049B68C 0x0009B68C 0x0009908C 0x00000000
CheckMenuItem - 0x0049B690 0x0009B690 0x00099090 0x00000000
CallWindowProcA - 0x0049B694 0x0009B694 0x00099094 0x00000000
CallNextHookEx - 0x0049B698 0x0009B698 0x00099098 0x00000000
BeginPaint - 0x0049B69C 0x0009B69C 0x0009909C 0x00000000
CharNextA - 0x0049B6A0 0x0009B6A0 0x000990A0 0x00000000
CharLowerA - 0x0049B6A4 0x0009B6A4 0x000990A4 0x00000000
CharUpperBuffA - 0x0049B6A8 0x0009B6A8 0x000990A8 0x00000000
CharToOemBuffA - 0x0049B6AC 0x0009B6AC 0x000990AC 0x00000000
CharToOemA - 0x0049B6B0 0x0009B6B0 0x000990B0 0x00000000
AdjustWindowRectEx - 0x0049B6B4 0x0009B6B4 0x000990B4 0x00000000
ActivateKeyboardLayout - 0x0049B6B8 0x0009B6B8 0x000990B8 0x00000000
kernel32.dll (1)
»
API Name Ordinal IAT Address Thunk RVA Thunk Offset Hint
Sleep - 0x0049B6C0 0x0009B6C0 0x000990C0 0x00000000
oleaut32.dll (13)
»
API Name Ordinal IAT Address Thunk RVA Thunk Offset Hint
SafeArrayPtrOfIndex - 0x0049B6C8 0x0009B6C8 0x000990C8 0x00000000
SafeArrayPutElement - 0x0049B6CC 0x0009B6CC 0x000990CC 0x00000000
SafeArrayGetElement - 0x0049B6D0 0x0009B6D0 0x000990D0 0x00000000
SafeArrayUnaccessData - 0x0049B6D4 0x0009B6D4 0x000990D4 0x00000000
SafeArrayAccessData - 0x0049B6D8 0x0009B6D8 0x000990D8 0x00000000
SafeArrayGetUBound - 0x0049B6DC 0x0009B6DC 0x000990DC 0x00000000
SafeArrayGetLBound - 0x0049B6E0 0x0009B6E0 0x000990E0 0x00000000
SafeArrayCreate - 0x0049B6E4 0x0009B6E4 0x000990E4 0x00000000
VariantChangeType - 0x0049B6E8 0x0009B6E8 0x000990E8 0x00000000
VariantCopyInd - 0x0049B6EC 0x0009B6EC 0x000990EC 0x00000000
VariantCopy - 0x0049B6F0 0x0009B6F0 0x000990F0 0x00000000
VariantClear - 0x0049B6F4 0x0009B6F4 0x000990F4 0x00000000
VariantInit - 0x0049B6F8 0x0009B6F8 0x000990F8 0x00000000
ole32.dll (3)
»
API Name Ordinal IAT Address Thunk RVA Thunk Offset Hint
CoCreateInstance - 0x0049B700 0x0009B700 0x00099100 0x00000000
CoUninitialize - 0x0049B704 0x0009B704 0x00099104 0x00000000
CoInitialize - 0x0049B708 0x0009B708 0x00099108 0x00000000
oleaut32.dll (4)
»
API Name Ordinal IAT Address Thunk RVA Thunk Offset Hint
CreateErrorInfo - 0x0049B710 0x0009B710 0x00099110 0x00000000
GetErrorInfo - 0x0049B714 0x0009B714 0x00099114 0x00000000
SetErrorInfo - 0x0049B718 0x0009B718 0x00099118 0x00000000
SysFreeString - 0x0049B71C 0x0009B71C 0x0009911C 0x00000000
comctl32.dll (22)
»
API Name Ordinal IAT Address Thunk RVA Thunk Offset Hint
ImageList_SetIconSize - 0x0049B724 0x0009B724 0x00099124 0x00000000
ImageList_GetIconSize - 0x0049B728 0x0009B728 0x00099128 0x00000000
ImageList_Write - 0x0049B72C 0x0009B72C 0x0009912C 0x00000000
ImageList_Read - 0x0049B730 0x0009B730 0x00099130 0x00000000
ImageList_GetDragImage - 0x0049B734 0x0009B734 0x00099134 0x00000000
ImageList_DragShowNolock - 0x0049B738 0x0009B738 0x00099138 0x00000000
ImageList_SetDragCursorImage - 0x0049B73C 0x0009B73C 0x0009913C 0x00000000
ImageList_DragMove - 0x0049B740 0x0009B740 0x00099140 0x00000000
ImageList_DragLeave - 0x0049B744 0x0009B744 0x00099144 0x00000000
ImageList_DragEnter - 0x0049B748 0x0009B748 0x00099148 0x00000000
ImageList_EndDrag - 0x0049B74C 0x0009B74C 0x0009914C 0x00000000
ImageList_BeginDrag - 0x0049B750 0x0009B750 0x00099150 0x00000000
ImageList_Remove - 0x0049B754 0x0009B754 0x00099154 0x00000000
ImageList_DrawEx - 0x0049B758 0x0009B758 0x00099158 0x00000000
ImageList_Draw - 0x0049B75C 0x0009B75C 0x0009915C 0x00000000
ImageList_GetBkColor - 0x0049B760 0x0009B760 0x00099160 0x00000000
ImageList_SetBkColor - 0x0049B764 0x0009B764 0x00099164 0x00000000
ImageList_ReplaceIcon - 0x0049B768 0x0009B768 0x00099168 0x00000000
ImageList_Add - 0x0049B76C 0x0009B76C 0x0009916C 0x00000000
ImageList_GetImageCount - 0x0049B770 0x0009B770 0x00099170 0x00000000
ImageList_Destroy - 0x0049B774 0x0009B774 0x00099174 0x00000000
ImageList_Create - 0x0049B778 0x0009B778 0x00099178 0x00000000
c7e5a3bff95d1190a9a12875d4f2c5238f092917cca76983f3e18b878238991d Downloaded File Stream
Clean
»
MIME Type application/octet-stream
File Size 6.16 KB
MD5 74c4f376d861bd69dc3d83ea5f858eb0 Copy to Clipboard
SHA1 3ae1babe6a84f8a99249ed8b053aca7a33c40095 Copy to Clipboard
SHA256 c7e5a3bff95d1190a9a12875d4f2c5238f092917cca76983f3e18b878238991d Copy to Clipboard
SSDeep 192:Yq9LbiJhQNu0nzHH/9VoOOE0fM7+LmDRhbS6:YmniJhQRnTVqOO8+ozf Copy to Clipboard
ImpHash -
Function Logfile
Exit-Icon

This feature requires an online-connection to the VMRay backend.

An offline version with limited functionality is also provided.
The offline version is supported only in Mozilla Firefoxwith deactivated setting \"security.fileuri.strict_origin_policy\".


    
Before

This feature requires an online-connection to the VMRay backend.

An offline version with limited functionality is also provided.
The offline version is supported only in Mozilla Firefoxwith deactivated setting \"security.fileuri.strict_origin_policy\".


    
After

This feature requires an online-connection to the VMRay backend.

An offline version with limited functionality is also provided.
The offline version is supported only in Mozilla Firefoxwith deactivated setting \"security.fileuri.strict_origin_policy\".


    
Screenshot
Expand-Icon
Exit-Icon
icon_left
icon_left
image