filename | services.exe | |
---|---|---|
size | 407016 (0x635e8) | |
md5 | 067cb90c277db4a737d5deaba3055972 | |
type | PE32+ executable (GUI) x86-64, for MS Windows | |
mimetype | application/x-dosexec | |
clamav | OK | |
virustotal | → scan with virustotal.com | |
histogram |
MZ Header
signature | MZ |
bytes_in_last_block | 0x90 |
blocks_in_file | 3 |
num_relocs | 0 |
header_paragraphs | 4 |
min_extra_paragraphs | 0 |
max_extra_paragraphs | 0xffff |
ss | 0 |
sp | 0xb8 |
checksum | 0 |
ip | 0 |
cs | 0 |
reloc_table_offset | 0x40 |
overlay_number | 0 |
reserved0 | 0 |
oem_id | 0 |
oem_info | 0 |
reserved2 | 0 |
reserved3 | 0 |
reserved4 | 0 |
reserved5 | 0 |
reserved6 | 0 |
lfanew | 0xe0 |
DOS stub
00000000: 0e 1f ba 0e 00 b4 09 cd 21 b8 01 4c cd 21 54 68 |........!..L.!Th| 00000010: 69 73 20 70 72 6f 67 72 61 6d 20 63 61 6e 6e 6f |is program canno| 00000020: 74 20 62 65 20 72 75 6e 20 69 6e 20 44 4f 53 20 |t be run in DOS | 00000030: 6d 6f 64 65 2e 0d 0d 0a 24 00 00 00 00 00 00 00 |mode....$.......|
PE Header
Sections
Data Directory
module_name | hint | ord | function_name |
---|---|---|---|
api-ms-win-core-crt-l1-1-0.dll | 50 | memcmp | |
api-ms-win-core-crt-l1-1-0.dll | 83 | wcschr | |
api-ms-win-core-crt-l1-1-0.dll | 24 | _wcslwr_s | |
api-ms-win-core-crt-l1-1-0.dll | 93 | wcsrchr | |
api-ms-win-core-crt-l1-1-0.dll | 82 | wcscat_s | |
api-ms-win-core-crt-l1-1-0.dll | 51 | memcpy | |
api-ms-win-core-crt-l1-1-0.dll | __C_specific_handler | ||
api-ms-win-core-crt-l1-1-0.dll | 22 | _vsnwprintf_s | |
api-ms-win-core-crt-l1-1-0.dll | 25 | _wcsnicmp | |
api-ms-win-core-crt-l1-1-0.dll | 97 | wcstoul | |
api-ms-win-core-crt-l1-1-0.dll | 8 | _ltow_s | |
api-ms-win-core-crt-l1-1-0.dll | 86 | wcscspn | |
api-ms-win-core-crt-l1-1-0.dll | 94 | wcsstr | |
api-ms-win-core-crt-l1-1-0.dll | 23 | _wcsicmp | |
api-ms-win-core-crt-l1-1-0.dll | 32 | _wtol | |
api-ms-win-core-crt-l1-1-0.dll | 89 | wcsncmp | |
api-ms-win-core-crt-l1-1-0.dll | 20 | _ultow_s | |
api-ms-win-core-crt-l1-1-0.dll | 55 | memset | |
api-ms-win-core-crt-l2-1-0.dll | 6 | _initterm | |
api-ms-win-core-crt-l2-1-0.dll | 13 | exit | |
api-ms-win-core-crt-l2-1-0.dll | 7 | _initterm_e | |
RPCRT4.dll | 454 | RpcServerInqCallAttributesA | |
RPCRT4.dll | 365 | RpcBindingFree | |
RPCRT4.dll | 355 | RpcAsyncAbortCall | |
RPCRT4.dll | 536 | UuidFromStringW | |
RPCRT4.dll | 148 | NdrAsyncServerCall | |
RPCRT4.dll | 298 | NdrServerCall2 | |
RPCRT4.dll | 37 | I_RpcBindingIsClientLocal | |
RPCRT4.dll | 106 | I_RpcSessionStrictContextHandle | |
RPCRT4.dll | 31 | I_RpcBindingInqLocalClientPID | |
RPCRT4.dll | 452 | RpcServerInqBindingHandle | |
RPCRT4.dll | 415 | RpcImpersonateClient | |
RPCRT4.dll | 449 | RpcRevertToSelf | |
RPCRT4.dll | 357 | RpcAsyncCompleteCall | |
RPCRT4.dll | 455 | RpcServerInqCallAttributesW | |
RPCRT4.dll | 65 | I_RpcMapWin32Status | |
RPCRT4.dll | 485 | RpcServerUseProtseqEpW | |
RPCRT4.dll | 470 | RpcServerRegisterIf3 | |
RPCRT4.dll | 471 | RpcServerRegisterIfEx | |
RPCRT4.dll | 492 | RpcServerUseProtseqW | |
RPCRT4.dll | 453 | RpcServerInqBindings | |
RPCRT4.dll | 387 | RpcBindingToStringBindingW | |
RPCRT4.dll | 520 | RpcStringBindingParseW | |
RPCRT4.dll | 522 | RpcStringFreeW | |
RPCRT4.dll | 398 | RpcEpRegisterW | |
RPCRT4.dll | 400 | RpcEpUnregister | |
RPCRT4.dll | 457 | RpcServerInqDefaultPrincNameW | |
RPCRT4.dll | 467 | RpcServerRegisterAuthInfoW | |
RPCRT4.dll | 389 | RpcBindingVectorFree | |
RPCRT4.dll | 472 | RpcServerSubscribeForNotification | |
RPCRT4.dll | 476 | RpcServerUnsubscribeForNotification | |
RPCRT4.dll | 534 | UuidEqual | |
RPCRT4.dll | 532 | UuidCreateNil | |
RPCRT4.dll | 531 | UuidCreate | |
SspiCli.dll | 33 | LogonUserExExW | |
ntdll.dll | 303 | NtDisplayString | |
ntdll.dll | 817 | RtlDeleteSecurityObject | |
ntdll.dll | 1220 | RtlReleaseResource | |
ntdll.dll | 633 | RtlAcquireResourceExclusive | |
ntdll.dll | 1221 | RtlReleaseSRWLockExclusive | |
ntdll.dll | 741 | RtlCopyLuid | |
ntdll.dll | 525 | NtSetEvent | |
ntdll.dll | 473 | NtRaiseHardError | |
ntdll.dll | 667 | RtlAdjustPrivilege | |
ntdll.dll | 885 | RtlExpandEnvironmentStrings_U | |
ntdll.dll | 1159 | RtlPublishWnfStateData | |
ntdll.dll | 1033 | RtlInitializeSRWLock | |
ntdll.dll | 378 | NtOpenFile | |
ntdll.dll | 1504 | TpReleaseWait | |
ntdll.dll | 1016 | RtlInitUnicodeStringEx | |
ntdll.dll | 1473 | TpAllocWait | |
ntdll.dll | 300 | NtDeleteWnfStateName | |
ntdll.dll | 286 | NtCreateWnfStateName | |
ntdll.dll | 397 | NtOpenThread | |
ntdll.dll | 470 | NtQueueApcThread | |
ntdll.dll | 1196 | RtlQueueApcWow64Thread | |
ntdll.dll | 88 | EvtIntReportEventAndSourceAsync | |
ntdll.dll | 59 | EtwEventWrite | |
ntdll.dll | 56 | EtwEventRegister | |
ntdll.dll | 1337 | RtlUnhandledExceptionFilter | |
ntdll.dll | 920 | RtlFreeHeap | |
ntdll.dll | 1514 | TpSetWait | |
ntdll.dll | 390 | NtOpenProcessToken | |
ntdll.dll | 1277 | RtlSetProcessIsCritical | |
ntdll.dll | 536 | NtSetInformationProcess | |
ntdll.dll | 430 | NtQueryInformationFile | |
ntdll.dll | 532 | NtSetInformationFile | |
ntdll.dll | 682 | RtlAppendUnicodeStringToString | |
ntdll.dll | 683 | RtlAppendUnicodeToString | |
ntdll.dll | 602 | NtWaitForSingleObject | |
ntdll.dll | 422 | NtQueryDirectoryFile | |
ntdll.dll | 1031 | RtlInitializeResource | |
ntdll.dll | 752 | RtlCopyUnicodeString | |
ntdll.dll | 316 | NtFilterToken | |
ntdll.dll | 1316 | RtlTestProtectedAccess | |
ntdll.dll | 433 | NtQueryInformationProcess | |
ntdll.dll | 634 | RtlAcquireResourceShared | |
ntdll.dll | 629 | RtlAbsoluteToSelfRelativeSD | |
ntdll.dll | 1261 | RtlSetDaclSecurityDescriptor | |
ntdll.dll | 643 | RtlAddAccessDeniedAce | |
ntdll.dll | 929 | RtlGetAce | |
ntdll.dll | 640 | RtlAddAccessAllowedAce | |
ntdll.dll | 755 | RtlCreateAcl | |
ntdll.dll | 944 | RtlGetDaclSecurityDescriptor | |
ntdll.dll | 1267 | RtlSetGroupSecurityDescriptor | |
ntdll.dll | 957 | RtlGetGroupSecurityDescriptor | |
ntdll.dll | 1274 | RtlSetOwnerSecurityDescriptor | |
ntdll.dll | 773 | RtlCreateSecurityDescriptor | |
ntdll.dll | 436 | NtQueryInformationToken | |
ntdll.dll | 191 | NtAdjustPrivilegesToken | |
ntdll.dll | 306 | NtDuplicateToken | |
ntdll.dll | 180 | NtAccessCheckAndAuditAlarm | |
ntdll.dll | 179 | NtAccessCheck | |
ntdll.dll | 410 | NtPrivilegeObjectAuditAlarm | |
ntdll.dll | 409 | NtPrivilegeCheck | |
ntdll.dll | 1120 | RtlMapGenericMask | |
ntdll.dll | 1282 | RtlSetSecurityObject | |
ntdll.dll | 398 | NtOpenThreadToken | |
ntdll.dll | 1379 | RtlValidRelativeSecurityDescriptor | |
ntdll.dll | 1186 | RtlQuerySecurityObject | |
ntdll.dll | 1358 | RtlUnsubscribeWnfNotificationWaitForCompletion | |
ntdll.dll | 1310 | RtlSubscribeWnfStateChangeNotification | |
ntdll.dll | 468 | NtQueryWnfStateData | |
ntdll.dll | 1309 | RtlSubAuthoritySid | |
ntdll.dll | 1529 | WinSqmAddToStream | |
ntdll.dll | 1256 | RtlSetControlSecurityDescriptor | |
ntdll.dll | 295 | NtDeleteKey | |
ntdll.dll | 310 | NtEnumerateKey | |
ntdll.dll | 298 | NtDeleteValueKey | |
ntdll.dll | 563 | NtSetValueKey | |
ntdll.dll | 465 | NtQueryValueKey | |
ntdll.dll | 381 | NtOpenKey | |
ntdll.dll | 257 | NtCreateKey | |
ntdll.dll | 1095 | RtlLengthSecurityDescriptor | |
ntdll.dll | 1380 | RtlValidSecurityDescriptor | |
ntdll.dll | 1265 | RtlSetEnvironmentVariable | |
ntdll.dll | 733 | RtlConvertExclusiveToShared | |
ntdll.dll | 735 | RtlConvertSharedToExclusive | |
ntdll.dll | 1213 | RtlRegisterWait | |
ntdll.dll | 825 | RtlDeregisterWait | |
ntdll.dll | 774 | RtlCreateServiceSid | |
ntdll.dll | 34 | DbgPrintEx | |
ntdll.dll | 971 | RtlGetOwnerSecurityDescriptor | |
ntdll.dll | 872 | RtlEqualSid | |
ntdll.dll | 348 | NtInitializeRegistry | |
ntdll.dll | 688 | RtlAreAllAccessesGranted | |
ntdll.dll | 443 | NtQueryKey | |
ntdll.dll | 538 | NtSetInformationThread | |
ntdll.dll | 672 | RtlAllocateHeap | |
ntdll.dll | 635 | RtlAcquireSRWLockExclusive | |
ntdll.dll | 1251 | RtlSendMsgToSm | |
ntdll.dll | 290 | NtDelayExecution | |
ntdll.dll | 296 | NtDeleteObjectAuditAlarm | |
ntdll.dll | 842 | RtlDosPathNameToNtPathName_U | |
ntdll.dll | 925 | RtlFreeUnicodeString | |
ntdll.dll | 636 | RtlAcquireSRWLockShared | |
ntdll.dll | 1022 | RtlInitializeCriticalSection | |
ntdll.dll | 1386 | RtlVirtualUnwind | |
ntdll.dll | 1117 | RtlLookupFunctionEntry | |
ntdll.dll | 294 | NtDeleteFile | |
ntdll.dll | 699 | RtlCaptureContext | |
ntdll.dll | 874 | RtlEqualUnicodeString | |
ntdll.dll | 969 | RtlGetNtProductType | |
ntdll.dll | 749 | RtlCopySid | |
ntdll.dll | 1096 | RtlLengthSid | |
ntdll.dll | 586 | NtUnloadDriver | |
ntdll.dll | 723 | RtlCompareUnicodeString | |
ntdll.dll | 423 | NtQueryDirectoryObject | |
ntdll.dll | 374 | NtOpenDirectoryObject | |
ntdll.dll | 1197 | RtlQueueWorkItem | |
ntdll.dll | 354 | NtLoadDriver | |
ntdll.dll | 457 | NtQuerySymbolicLinkObject | |
ntdll.dll | 236 | NtCloseObjectAuditAlarm | |
ntdll.dll | 396 | NtOpenSymbolicLinkObject | |
ntdll.dll | 552 | NtSetSystemEnvironmentValue | |
ntdll.dll | 1015 | RtlInitUnicodeString | |
ntdll.dll | 235 | NtClose | |
ntdll.dll | 1136 | RtlNtStatusToDosError | |
ntdll.dll | 81 | EtwTraceMessage | |
ntdll.dll | 1222 | RtlReleaseSRWLockShared | |
ntdll.dll | 566 | NtShutdownSystem | |
ntdll.dll | 460 | NtQuerySystemInformation | |
ntdll.dll | 1137 | RtlNtStatusToDosErrorNoTeb | |
ntdll.dll | 1094 | RtlLengthRequiredSid | |
ntdll.dll | 646 | RtlAddAce | |
ntdll.dll | 1130 | RtlNewSecurityObject | |
ntdll.dll | 1279 | RtlSetSaclSecurityDescriptor | |
ntdll.dll | 1034 | RtlInitializeSid | |
ntdll.dll | 1308 | RtlSubAuthorityCountSid | |
ntdll.dll | 678 | RtlAnsiStringToUnicodeString | |
ntdll.dll | 1006 | RtlInitAnsiString | |
ntdll.dll | 1340 | RtlUnicodeStringToAnsiString | |
ntdll.dll | 68 | EtwGetTraceEnableLevel | |
ntdll.dll | 67 | EtwGetTraceEnableFlags | |
ntdll.dll | 76 | EtwRegisterTraceGuidsW | |
ntdll.dll | 1342 | RtlUnicodeStringToInteger | |
ntdll.dll | 69 | EtwGetTraceLoggerHandle | |
ntdll.dll | 1271 | RtlSetLastWin32Error | |
ntdll.dll | 582 | NtTraceControl | |
ntdll.dll | 730 | RtlConnectToSm | |
profapi.dll | 102 | ||
profapi.dll | 101 | ||
profapi.dll | 106 | ||
profapi.dll | 105 | ||
api-ms-win-security-lsalookup-l1-1-1.dll | 12 | LsaLookupOpenLocalPolicy | |
api-ms-win-security-lsalookup-l1-1-1.dll | 9 | LsaLookupFreeMemory | |
api-ms-win-security-lsalookup-l1-1-1.dll | 8 | LsaLookupClose | |
api-ms-win-security-lsalookup-l1-1-1.dll | 11 | LsaLookupManageSidNameMapping | |
api-ms-win-security-lsalookup-l1-1-1.dll | 10 | LsaLookupGetDomainInfo | |
api-ms-win-security-lsalookup-l1-1-1.dll | 13 | LsaLookupTranslateNames | |
api-ms-win-security-lsalookup-l1-1-1.dll | 14 | LsaLookupTranslateSids | |
api-ms-win-security-sddl-l1-1-0.dll | 1 | ConvertSidToStringSidW | |
api-ms-win-security-sddl-l1-1-0.dll | 2 | ConvertStringSecurityDescriptorToSecurityDescriptorW | |
api-ms-win-security-sddl-l1-1-0.dll | ConvertSecurityDescriptorToStringSecurityDescriptorW | ||
CRYPTBASE.dll | 4 | SystemFunction005 | |
CRYPTBASE.dll | 6 | SystemFunction029 | |
api-ms-win-core-errorhandling-l1-1-1.dll | 10 | SetUnhandledExceptionFilter | |
api-ms-win-core-errorhandling-l1-1-1.dll | 3 | GetLastError | |
api-ms-win-core-errorhandling-l1-1-1.dll | 9 | SetLastError | |
api-ms-win-core-errorhandling-l1-1-1.dll | 11 | UnhandledExceptionFilter | |
api-ms-win-core-errorhandling-l1-1-1.dll | 8 | SetErrorMode | |
api-ms-win-core-file-l1-2-1.dll | 5 | CreateFileW | |
api-ms-win-core-file-l1-2-1.dll | 18 | FindFirstFileW | |
api-ms-win-core-file-l1-2-1.dll | 22 | FindNextFileW | |
api-ms-win-core-file-l1-2-1.dll | 11 | FindClose | |
api-ms-win-core-file-l1-2-1.dll | 2 | CreateDirectoryW | |
api-ms-win-core-file-l1-2-1.dll | 71 | SetFileInformationByHandle | |
api-ms-win-core-handle-l1-1-0.dll | 1 | DuplicateHandle | |
api-ms-win-core-handle-l1-1-0.dll | CloseHandle | ||
api-ms-win-core-heap-l1-2-0.dll | 6 | HeapFree | |
api-ms-win-core-heap-l1-2-0.dll | 2 | HeapAlloc | |
api-ms-win-core-heap-l1-2-0.dll | 10 | HeapSetInformation | |
api-ms-win-core-io-l1-1-1.dll | 4 | DeviceIoControl | |
api-ms-win-core-libraryloader-l1-2-0.dll | 24 | LoadStringW | |
api-ms-win-core-libraryloader-l1-2-0.dll | 18 | GetModuleHandleW | |
api-ms-win-core-libraryloader-l1-2-0.dll | 19 | GetProcAddress | |
api-ms-win-core-libraryloader-l1-2-0.dll | 21 | LoadLibraryExW | |
api-ms-win-core-libraryloader-l1-2-0.dll | 10 | FreeLibrary | |
api-ms-win-core-registry-l1-1-0.dll | RegCloseKey | ||
api-ms-win-core-registry-l1-1-0.dll | 7 | RegDeleteTreeW | |
api-ms-win-core-registry-l1-1-0.dll | 25 | RegNotifyChangeKeyValue | |
api-ms-win-core-registry-l1-1-0.dll | 38 | RegSetKeySecurity | |
api-ms-win-core-registry-l1-1-0.dll | 16 | RegGetKeySecurity | |
api-ms-win-core-registry-l1-1-0.dll | 24 | RegLoadMUIStringW | |
api-ms-win-core-registry-l1-1-0.dll | 9 | RegDeleteValueW | |
api-ms-win-core-registry-l1-1-0.dll | 3 | RegCreateKeyExW | |
api-ms-win-core-registry-l1-1-0.dll | 40 | RegSetValueExW | |
api-ms-win-core-registry-l1-1-0.dll | 31 | RegQueryInfoKeyW | |
api-ms-win-core-registry-l1-1-0.dll | 14 | RegEnumValueW | |
api-ms-win-core-registry-l1-1-0.dll | 28 | RegOpenKeyExW | |
api-ms-win-core-registry-l1-1-0.dll | 33 | RegQueryValueExW | |
api-ms-win-core-processenvironment-l1-2-0.dll | 11 | GetEnvironmentVariableW | |
api-ms-win-core-processenvironment-l1-2-0.dll | 1 | ExpandEnvironmentStringsW | |
api-ms-win-core-processthreads-l1-1-2.dll | 5 | CreateThread | |
api-ms-win-core-processthreads-l1-1-2.dll | 2 | CreateProcessW | |
api-ms-win-core-processthreads-l1-1-2.dll | 57 | SetThreadPriority | |
api-ms-win-core-processthreads-l1-1-2.dll | 15 | GetCurrentThread | |
api-ms-win-core-processthreads-l1-1-2.dll | 16 | GetCurrentThreadId | |
api-ms-win-core-processthreads-l1-1-2.dll | 63 | TerminateProcess | |
api-ms-win-core-processthreads-l1-1-2.dll | 22 | GetProcessId | |
api-ms-win-core-processthreads-l1-1-2.dll | 44 | OpenThreadToken | |
api-ms-win-core-processthreads-l1-1-2.dll | 11 | GetCurrentProcess | |
api-ms-win-core-processthreads-l1-1-2.dll | 38 | InitializeProcThreadAttributeList | |
api-ms-win-core-processthreads-l1-1-2.dll | 69 | UpdateProcThreadAttribute | |
api-ms-win-core-processthreads-l1-1-2.dll | 6 | DeleteProcThreadAttributeList | |
api-ms-win-core-processthreads-l1-1-2.dll | 1 | CreateProcessAsUserW | |
api-ms-win-core-processthreads-l1-1-2.dll | 48 | ResumeThread | |
api-ms-win-core-processthreads-l1-1-2.dll | 42 | OpenProcessToken | |
api-ms-win-core-processthreads-l1-1-2.dll | 12 | GetCurrentProcessId | |
api-ms-win-core-processthreads-l1-1-2.dll | 41 | OpenProcess | |
api-ms-win-core-processthreads-l1-1-2.dll | 51 | SetProcessMitigationPolicy | |
api-ms-win-core-processthreads-l1-1-2.dll | 53 | SetProcessShutdownParameters | |
api-ms-win-core-processthreads-l1-1-2.dll | 8 | ExitThread | |
api-ms-win-core-processthreads-l1-1-2.dll | 26 | GetProcessTimes | |
api-ms-win-core-profile-l1-1-0.dll | QueryPerformanceCounter | ||
api-ms-win-core-string-l1-1-0.dll | 2 | CompareStringW | |
api-ms-win-core-synch-l1-2-0.dll | 34 | ReleaseSRWLockExclusive | |
api-ms-win-core-synch-l1-2-0.dll | 22 | InitializeCriticalSection | |
api-ms-win-core-synch-l1-2-0.dll | 15 | EnterCriticalSection | |
api-ms-win-core-synch-l1-2-0.dll | 27 | LeaveCriticalSection | |
api-ms-win-core-synch-l1-2-0.dll | 43 | Sleep | |
api-ms-win-core-synch-l1-2-0.dll | 51 | WaitForSingleObject | |
api-ms-win-core-synch-l1-2-0.dll | AcquireSRWLockExclusive | ||
api-ms-win-core-synch-l1-2-0.dll | 29 | OpenEventW | |
api-ms-win-core-synch-l1-2-0.dll | 37 | ResetEvent | |
api-ms-win-core-synch-l1-2-0.dll | 50 | WaitForMultipleObjectsEx | |
api-ms-win-core-synch-l1-2-0.dll | 6 | CreateEventW | |
api-ms-win-core-synch-l1-2-0.dll | 39 | SetEvent | |
api-ms-win-core-sysinfo-l1-2-1.dll | 15 | GetSystemTime | |
api-ms-win-core-sysinfo-l1-2-1.dll | 25 | GetVersionExW | |
api-ms-win-core-sysinfo-l1-2-1.dll | 3 | GetComputerNameExW | |
api-ms-win-core-sysinfo-l1-2-1.dll | 12 | GetSystemDirectoryW | |
api-ms-win-core-sysinfo-l1-2-1.dll | 22 | GetTickCount64 | |
api-ms-win-core-sysinfo-l1-2-1.dll | 21 | GetTickCount | |
api-ms-win-core-sysinfo-l1-2-1.dll | 17 | GetSystemTimeAsFileTime | |
api-ms-win-security-base-l1-2-0.dll | 7 | AddAccessAllowedAce | |
api-ms-win-security-base-l1-2-0.dll | 91 | SetKernelObjectSecurity | |
api-ms-win-security-base-l1-2-0.dll | 50 | GetKernelObjectSecurity | |
api-ms-win-security-base-l1-2-0.dll | 44 | FreeSid | |
api-ms-win-security-base-l1-2-0.dll | 22 | AllocateAndInitializeSid | |
api-ms-win-security-base-l1-2-0.dll | 23 | AllocateLocallyUniqueId | |
api-ms-win-security-base-l1-2-0.dll | 96 | SetSecurityDescriptorDacl | |
api-ms-win-security-base-l1-2-0.dll | 13 | AddAce | |
api-ms-win-security-base-l1-2-0.dll | 69 | InitializeAcl | |
api-ms-win-security-base-l1-2-0.dll | 54 | GetSecurityDescriptorDacl | |
api-ms-win-security-base-l1-2-0.dll | 98 | SetSecurityDescriptorOwner | |
api-ms-win-security-base-l1-2-0.dll | 70 | InitializeSecurityDescriptor | |
api-ms-win-security-base-l1-2-0.dll | 42 | EqualSid | |
api-ms-win-security-base-l1-2-0.dll | 21 | AdjustTokenPrivileges | |
api-ms-win-security-base-l1-2-0.dll | 87 | RevertToSelf | |
api-ms-win-security-base-l1-2-0.dll | 67 | ImpersonateLoggedOnUser | |
api-ms-win-security-base-l1-2-0.dll | 30 | CopySid | |
api-ms-win-security-base-l1-2-0.dll | 51 | GetLengthSid | |
api-ms-win-security-base-l1-2-0.dll | 27 | CheckTokenMembership | |
api-ms-win-security-base-l1-2-0.dll | 64 | GetTokenInformation | |
api-ms-win-security-base-l1-2-0.dll | 101 | SetTokenInformation | |
api-ms-win-core-threadpool-l1-2-0.dll | 10 | CreateThreadpoolCleanupGroup | |
api-ms-win-core-threadpool-l1-2-0.dll | 14 | CreateThreadpoolWork | |
api-ms-win-core-threadpool-l1-2-0.dll | 31 | SubmitThreadpoolWork | |
api-ms-win-core-threadpool-l1-2-0.dll | 4 | CloseThreadpoolCleanupGroupMembers | |
api-ms-win-core-threadpool-l1-2-0.dll | 3 | CloseThreadpoolCleanupGroup | |
api-ms-win-core-threadpool-l1-2-0.dll | CallbackMayRunLong | ||
api-ms-win-core-threadpool-l1-2-0.dll | 8 | CloseThreadpoolWork | |
api-ms-win-core-wow64-l1-1-0.dll | IsWow64Process | ||
api-ms-win-core-heap-obsolete-l1-1-0.dll | 8 | LocalAlloc | |
api-ms-win-core-heap-obsolete-l1-1-0.dll | 10 | LocalFree |
StringTable 040904B0
CompanyName | Microsoft Corporation |
FileDescription | Services and Controller app |
FileVersion | 6.3.9600.17084 (winblue_gdr.140327-2249) |
InternalName | services.exe |
LegalCopyright | © Microsoft Corporation. All rights reserved. |
OriginalFilename | services.exe |
ProductName | Microsoft® Windows® Operating System |
ProductVersion | 6.3.9600.17084 |
VS_FIXEDFILEINFO
FileVersion | 6.3.9600.17084 |
ProductVersion | 6.3.9600.17084 |
StrucVersion | 0x10000 |
FileFlagsMask | 0x3f |
FileFlags | 0 |
FileOS | 0x40004 |
FileType | 1 |
FileSubtype | 0 |
Signers (1)
issuer: /C=US/ST=Washington/L=Redmond/O=Microsoft Corporation/CN=Microsoft Windows Production PCA 2011
serial: 330000000ECB1DE44CF76049B800000000000E
Certificates (2)
Certificate: Data: Version: 3 (0x2) Serial Number: 33:00:00:00:0e:cb:1d:e4:4c:f7:60:49:b8:00:00:00:00:00:0e Signature Algorithm: sha256WithRSAEncryption Issuer: C=US, ST=Washington, L=Redmond, O=Microsoft Corporation, CN=Microsoft Windows Production PCA 2011 Validity Not Before: Mar 13 21:34:12 2013 GMT Not After : Jun 13 21:34:12 2014 GMT Subject: C=US, ST=Washington, L=Redmond, O=Microsoft Corporation, CN=Microsoft Windows Publisher Subject Public Key Info: Public Key Algorithm: rsaEncryption Public-Key: (2048 bit) Modulus: 00:f4:f3:7c:14:0b:4c:7f:eb:a0:c3:5e:b3:01:98: cb:96:4c:7e:09:5b:b8:9e:6c:dc:f0:64:c7:e4:be: 53:fa:af:27:cf:20:50:98:3d:e8:5a:17:d1:66:ba: b0:92:96:cb:49:14:ef:e4:0c:36:66:cf:fb:a8:f8: 1b:92:b2:d2:b3:73:54:85:ff:d6:ff:0b:b8:8a:7d: 8a:25:a0:a7:86:6c:04:e7:3b:8e:85:23:26:b7:76: bb:57:a0:9a:52:89:4b:3f:5f:d2:fe:7b:8f:7f:f2: 1b:41:f0:f5:dc:c8:e9:85:af:56:49:74:f6:f0:3b: 34:e2:4c:ab:ee:6d:94:67:2c:85:2c:7c:7d:d0:e4: 33:80:a7:ba:2b:9d:2e:05:05:33:4b:e5:ca:08:5b: fe:92:9d:fb:fe:a9:14:b4:d4:4c:c9:4b:77:9b:f8: 66:c9:8f:3a:c7:71:52:70:4d:f9:fb:05:78:73:02: e6:9e:d9:ca:84:42:c6:40:a4:f4:eb:13:21:bf:60: e2:5a:36:b7:42:1b:79:e2:5c:96:79:1a:2b:2e:1c: ba:e1:02:3f:ed:2f:5f:3f:3f:21:db:54:5a:da:84: 4e:98:08:d5:bb:99:7b:3e:56:b9:cf:4d:50:9b:bc: 1b:5e:0c:48:4c:b3:9e:03:c4:9f:7b:19:1d:86:2f: 50:55 Exponent: 65537 (0x10001) X509v3 extensions: X509v3 Extended Key Usage: Code Signing, 1.3.6.1.4.1.311.10.3.6, 1.3.6.1.4.1.311.10.3.22, 1.3.6.1.4.1.311.10.3.23 X509v3 Subject Key Identifier: 7B:FF:22:40:0A:51:95:43:0D:96:92:92:89:49:14:63:8E:D4:CB:37 X509v3 Subject Alternative Name: DirName:/OU=MOPR/serialNumber=34635\+f9b3042a-d62a-424f-96a1-f1687536ecba X509v3 Authority Key Identifier: A9:29:02:39:8E:16:C4:97:78:CD:90:F9:9E:4F:9A:E1:7C:55:AF:53 X509v3 CRL Distribution Points: Full Name: URI:http://www.microsoft.com/pkiops/crl/MicWinProPCA2011_2011-10-19.crl Authority Information Access: CA Issuers - URI:http://www.microsoft.com/pkiops/certs/MicWinProPCA2011_2011-10-19.crt X509v3 Basic Constraints: critical CA:FALSE Signature Algorithm: sha256WithRSAEncryption Signature Value: 18:7a:2c:7d:b6:18:f3:92:7c:9e:e0:dd:5c:a6:8e:42:10:66: e5:bf:45:ee:7f:f9:87:4b:40:21:de:98:d6:e7:14:a3:5f:27: 7c:44:60:9a:06:38:fd:b5:b2:fb:96:4e:e1:f3:a4:e2:af:57: 84:6b:4c:0e:4b:47:21:b6:c9:ef:26:a7:df:e4:f8:1f:53:31: 54:ef:1c:a1:9c:9f:0a:83:4c:03:14:ce:49:bc:4a:f5:3d:ec: 95:9d:d1:da:c2:84:d2:1e:55:10:87:8d:1d:9e:e5:33:f3:d3: 02:a7:be:03:4b:86:bc:81:c7:d9:f4:fc:00:81:e4:9f:bf:0e: 70:3f:e7:63:f6:49:95:5c:52:cf:0a:b2:ce:07:4f:14:85:5c: 22:68:d2:8d:82:e6:35:b9:03:f7:bc:42:59:8d:cc:a4:7e:92: cd:49:f3:6f:0f:96:b7:9b:a2:6d:e7:ad:a0:09:44:56:e3:8f: 7e:f1:9d:0e:a6:69:9a:dc:de:bd:5a:8a:d4:86:69:c5:f6:9b: f6:59:fc:f8:70:2e:1d:ab:8e:84:f6:f2:0d:92:7a:ff:b3:cd: bf:37:02:09:e2:37:5d:4a:12:d5:f5:a1:80:d6:8a:81:26:a2: fd:9a:73:ba:ab:7c:cb:2c:ff:e6:c0:1c:d7:2b:a7:b2:0a:8f: 99:72:2f:7c
Certificate: Data: Version: 3 (0x2) Serial Number: 61:07:76:56:00:00:00:00:00:08 Signature Algorithm: sha256WithRSAEncryption Issuer: C=US, ST=Washington, L=Redmond, O=Microsoft Corporation, CN=Microsoft Root Certificate Authority 2010 Validity Not Before: Oct 19 18:41:42 2011 GMT Not After : Oct 19 18:51:42 2026 GMT Subject: C=US, ST=Washington, L=Redmond, O=Microsoft Corporation, CN=Microsoft Windows Production PCA 2011 Subject Public Key Info: Public Key Algorithm: rsaEncryption Public-Key: (2048 bit) Modulus: 00:dd:0c:bb:a2:e4:2e:09:e3:e7:c5:f7:96:69:bc: 00:21:bd:69:33:33:ef:ad:04:cb:54:80:ee:06:83: bb:c5:20:84:d9:f7:d2:8b:f3:38:b0:ab:a4:ad:2d: 7c:62:79:05:ff:e3:4a:3f:04:35:20:70:e3:c4:e7: 6b:e0:9c:c0:36:75:e9:8a:31:dd:8d:70:e5:dc:37: b5:74:46:96:28:5b:87:60:23:2c:bf:dc:47:a5:67: f7:51:27:9e:72:eb:07:a6:c9:b9:1e:3b:53:35:7c: e5:d3:ec:27:b9:87:1c:fe:b9:c9:23:09:6f:a8:46: 91:c1:6e:96:3c:41:d3:cb:a3:3f:5d:02:6a:4d:ec: 69:1f:25:28:5c:36:ff:fd:43:15:0a:94:e0:19:b4: cf:df:c2:12:e2:c2:5b:27:ee:27:78:30:8b:5b:2a: 09:6b:22:89:53:60:16:2c:c0:68:1d:53:ba:ec:49: f3:9d:61:8c:85:68:09:73:44:5d:7d:a2:54:2b:dd: 79:f7:15:cf:35:5d:6c:1c:2b:5c:ce:bc:9c:23:8b: 6f:6e:b5:26:d9:36:13:c3:4f:d6:27:ae:b9:32:3b: 41:92:2c:e1:c7:cd:77:e8:aa:54:4e:f7:5c:0b:04: 87:65:b4:43:18:a8:b2:e0:6d:19:77:ec:5a:24:fa: 48:03 Exponent: 65537 (0x10001) X509v3 extensions: 1.3.6.1.4.1.311.21.1: ... X509v3 Subject Key Identifier: A9:29:02:39:8E:16:C4:97:78:CD:90:F9:9E:4F:9A:E1:7C:55:AF:53 1.3.6.1.4.1.311.20.2: . .S.u.b.C.A X509v3 Key Usage: Digital Signature, Certificate Sign, CRL Sign X509v3 Basic Constraints: critical CA:TRUE X509v3 Authority Key Identifier: D5:F6:56:CB:8F:E8:A2:5C:62:68:D1:3D:94:90:5B:D7:CE:9A:18:C4 X509v3 CRL Distribution Points: Full Name: URI:http://crl.microsoft.com/pki/crl/products/MicRooCerAut_2010-06-23.crl Authority Information Access: CA Issuers - URI:http://www.microsoft.com/pki/certs/MicRooCerAut_2010-06-23.crt Signature Algorithm: sha256WithRSAEncryption Signature Value: 14:fc:7c:71:51:a5:79:c2:6e:b2:ef:39:3e:bc:3c:52:0f:6e: 2b:3f:10:13:73:fe:a8:68:d0:48:a6:34:4d:8a:96:05:26:ee: 31:46:90:61:79:d6:ff:38:2e:45:6b:f4:c0:e5:28:b8:da:1d: 8f:8a:db:09:d7:1a:c7:4c:0a:36:66:6a:8c:ec:1b:d7:04:90: a8:18:17:a4:9b:b9:e2:40:32:36:76:c4:c1:5a:c6:bf:e4:04: c0:ea:16:d3:ac:c3:68:ef:62:ac:dd:54:6c:50:30:58:a6:eb: 7c:fe:94:a7:4e:8e:f4:ec:7c:86:73:57:c2:52:21:73:34:5a: f3:a3:8a:56:c8:04:da:07:09:ed:f8:8b:e3:ce:f4:7e:8e:ae: f0:f6:0b:8a:08:fb:3f:c9:1d:72:7f:53:b8:eb:be:63:e0:e3: 3d:31:65:b0:81:e5:f2:ac:cd:16:a4:9f:3d:a8:b1:9b:c2:42: d0:90:84:5f:54:1d:ff:89:ea:ba:1d:47:90:6f:b0:73:4e:41: 9f:40:9f:5f:e5:a1:2a:b2:11:91:73:8a:21:28:f0:ce:de:73: 39:5f:3e:ab:5c:60:ec:df:03:10:a8:d3:09:e9:f4:f6:96:85: b6:7f:51:88:66:47:19:8d:a2:b0:12:3d:81:2a:68:05:77:bb: 91:4c:62:7b:b6:c1:07:c7:ba:7a:87:34:03:0e:4b:62:7a:99: e9:ca:fc:ce:4a:37:c9:2d:a4:57:7c:1c:fe:3d:dc:b8:0f:5a: fa:d6:c4:b3:02:85:02:3a:ea:b3:d9:6e:e4:69:21:37:de:81: d1:f6:75:19:05:67:d3:93:57:5e:29:1b:39:c8:ee:2d:e1:cd: e4:45:73:5b:d0:d2:ce:7a:ab:16:19:82:46:58:d0:5e:9d:81: b3:67:af:6c:35:f2:bc:e5:3f:24:e2:35:a2:0a:75:06:f6:18: 56:99:d4:78:2c:d1:05:1b:eb:d0:88:01:9d:aa:10:f1:05:df: ba:7e:2c:63:b7:06:9b:23:21:c4:f9:78:6c:e2:58:17:06:36: 2b:91:12:03:cc:a4:d9:f2:2d:ba:f9:94:9d:40:ed:18:45:f1: ce:8a:5c:6b:3e:ab:03:d3:70:18:2a:0a:6a:e0:5f:47:d1:d5: 63:0a:32:f2:af:d7:36:1f:2a:70:5a:e5:42:59:08:71:4b:57: ba:7e:83:81:f0:21:3c:f4:1c:c1:c5:b9:90:93:0e:88:45:93: 86:e9:b1:20:99:be:98:cb:c5:95:a4:5d:62:d6:a0:63:08:20: bd:75:10:77:7d:3d:f3:45:b9:9f:97:9f:cb:57:80:6f:33:a9: 04:cf:77:a4:62:1c:59:7e
undefined method `first' for #
Please donate some bucks to keep this site up and running: | |
Ko-fi | |
---|---|
Yandex.Money | |
Thank you! |
everything is OK