filename | TEE-Full.exe | |
---|---|---|
size | 2369379 (0x242763) | |
md5 | 9b0a6026e8a204527e135aaeed35bfb2 | |
type | PE32 executable (GUI) Intel 80386, for MS Windows | |
mimetype | application/x-dosexec | |
clamav | OK | |
virustotal | → scan with virustotal.com | |
histogram |
MZ Header
signature | MZ |
bytes_in_last_block | 0x90 |
blocks_in_file | 3 |
num_relocs | 0 |
header_paragraphs | 4 |
min_extra_paragraphs | 0 |
max_extra_paragraphs | 0xffff |
ss | 0 |
sp | 0xb8 |
checksum | 0 |
ip | 0 |
cs | 0 |
reloc_table_offset | 0x40 |
overlay_number | 0 |
reserved0 | 0 |
oem_id | 0 |
oem_info | 0 |
reserved2 | 0 |
reserved3 | 0 |
reserved4 | 0 |
reserved5 | 0 |
reserved6 | 0 |
lfanew | 0x108 |
Rich Header
lib id | version | times used |
---|---|---|
12 | 7291 | 4 |
11 | 8168 | 3 |
14 | 7299 | 23 |
10 | 8168 | 45 |
29 | 9178 | 1 |
19 | 8022 | 4 |
0 | 0 | 8 |
19 | 8034 | 19 |
1 | 0 | 274 |
11 | 8447 | 36 |
6 | 1735 | 1 |
DOS stub
00000000: 0e 1f ba 0e 00 b4 09 cd 21 b8 01 4c cd 21 54 68 |........!..L.!Th| 00000010: 69 73 20 70 72 6f 67 72 61 6d 20 63 61 6e 6e 6f |is program canno| 00000020: 74 20 62 65 20 72 75 6e 20 69 6e 20 44 4f 53 20 |t be run in DOS | 00000030: 6d 6f 64 65 2e 0d 0d 0a 24 00 00 00 00 00 00 00 |mode....$.......|
PE Header
Packer / Compiler
Sections
name | va | vsize | raw size | flags | |
---|---|---|---|---|---|
.text | 0x1000 | 0x29f77 | 0x2a000 | R-X CODE | |
.rdata | 0x2b000 | 0x2446 | 0x2600 | R-- IDATA | |
.data | 0x2e000 | 0x54b38 | 0x3200 | RW- IDATA | |
.rsrc | 0x83000 | 0x10d0 | 0x1200 | R-- IDATA |
Data Directory
type | va | size | |
---|---|---|---|
EXPORT | 0 | 0 | |
IMPORT | 0x2bbe8 | 0xf0 | |
RESOURCE | 0x83000 | 0x10d0 | |
EXCEPTION | 0 | 0 | |
SECURITY | 0 | 0 | |
BASERELOC | 0 | 0 | |
DEBUG | 0 | 0 | |
ARCHITECTURE | 0 | 0 | |
GLOBALPTR | 0 | 0 | |
TLS | 0 | 0 | |
LOAD_CONFIG | 0 | 0 | |
Bound_IAT | 0 | 0 | |
IAT | 0x2b000 | 0x474 | |
Delay_IAT | 0 | 0 | |
CLR_Header | 0 | 0 |
type | name | size | cp | |
---|---|---|---|---|
CURSOR | #2 | 308 | 0 | |
BITMAP | #127 | 468 | 0 | |
ICON | #1 | 744 | 0 | |
DIALOG | #18 | 240 | 0 | |
DIALOG | #114 | 480 | 0 | |
DIALOG | #138 | 166 | 0 | |
DIALOG | #154 | 182 | 0 | |
GROUP_CURSOR | #152 | 20 | 0 | |
GROUP_ICON | #2000 | 20 | 0 | |
MANIFEST | #1 | 978 | 0 |
module_name | hint | ord | function_name |
---|---|---|---|
KERNEL32.dll | 267 | GetExitCodeProcess | |
KERNEL32.dll | 773 | lstrcpynA | |
KERNEL32.dll | 718 | WaitForSingleObject | |
KERNEL32.dll | 251 | GetDateFormatA | |
KERNEL32.dll | 345 | GetSystemDirectoryA | |
KERNEL32.dll | 202 | GetCommandLineA | |
KERNEL32.dll | 373 | GetVersionExA | |
KERNEL32.dll | 63 | CreateMutexA | |
KERNEL32.dll | 308 | GetPrivateProfileIntA | |
KERNEL32.dll | 314 | GetPrivateProfileStringA | |
KERNEL32.dll | 764 | lstrcmpA | |
KERNEL32.dll | 349 | GetSystemTime | |
KERNEL32.dll | 460 | LocalFree | |
KERNEL32.dll | 456 | LocalAlloc | |
KERNEL32.dll | 372 | GetVersion | |
KERNEL32.dll | 381 | GetWindowsDirectoryA | |
KERNEL32.dll | 347 | GetSystemInfo | |
KERNEL32.dll | 206 | GetComputerNameA | |
KERNEL32.dll | 609 | SetEndOfFile | |
KERNEL32.dll | 447 | LCMapStringA | |
KERNEL32.dll | 342 | GetStringTypeW | |
KERNEL32.dll | 339 | GetStringTypeA | |
KERNEL32.dll | 292 | GetModuleFileNameA | |
KERNEL32.dll | 185 | GetACP | |
KERNEL32.dll | 191 | GetCPInfo | |
KERNEL32.dll | 277 | GetFileType | |
KERNEL32.dll | 338 | GetStdHandle | |
KERNEL32.dll | 621 | SetHandleCount | |
KERNEL32.dll | 264 | GetEnvironmentStringsW | |
KERNEL32.dll | 262 | GetEnvironmentStrings | |
KERNEL32.dll | 179 | FreeEnvironmentStringsW | |
KERNEL32.dll | 178 | FreeEnvironmentStringsA | |
KERNEL32.dll | 685 | UnhandledExceptionFilter | |
KERNEL32.dll | 419 | HeapSize | |
KERNEL32.dll | 418 | HeapReAlloc | |
KERNEL32.dll | 699 | VirtualAlloc | |
KERNEL32.dll | 703 | VirtualFree | |
KERNEL32.dll | 411 | HeapCreate | |
KERNEL32.dll | 413 | HeapDestroy | |
KERNEL32.dll | 336 | GetStartupInfoA | |
KERNEL32.dll | 559 | RtlUnwind | |
KERNEL32.dll | 670 | TerminateProcess | |
KERNEL32.dll | 409 | HeapAlloc | |
KERNEL32.dll | 415 | HeapFree | |
KERNEL32.dll | 620 | SetFileTime | |
KERNEL32.dll | 397 | GlobalMemoryStatus | |
KERNEL32.dll | 334 | GetShortPathNameA | |
KERNEL32.dll | 451 | LoadLibraryExA | |
KERNEL32.dll | 741 | WritePrivateProfileStringA | |
KERNEL32.dll | 739 | WritePrivateProfileSectionA | |
KERNEL32.dll | 478 | MoveFileExA | |
KERNEL32.dll | 247 | GetCurrentProcess | |
KERNEL32.dll | 125 | ExitProcess | |
KERNEL32.dll | 722 | WideCharToMultiByte | |
KERNEL32.dll | 68 | CreateProcessA | |
KERNEL32.dll | 551 | RemoveDirectoryA | |
KERNEL32.dll | 276 | GetFileTime | |
KERNEL32.dll | 696 | VerLanguageNameA | |
KERNEL32.dll | 32 | CompareFileTime | |
KERNEL32.dll | 477 | MoveFileA | |
KERNEL32.dll | 40 | CopyFileA | |
KERNEL32.dll | 274 | GetFileSize | |
KERNEL32.dll | 92 | DeviceIoControl | |
KERNEL32.dll | 286 | GetLogicalDriveStringsA | |
KERNEL32.dll | 180 | FreeLibrary | |
KERNEL32.dll | 245 | GetCurrentDirectoryA | |
KERNEL32.dll | 605 | SetCurrentDirectoryA | |
KERNEL32.dll | 612 | SetErrorMode | |
KERNEL32.dll | 484 | MultiByteToWideChar | |
KERNEL32.dll | 616 | SetFileAttributesA | |
KERNEL32.dll | 357 | GetTempPathA | |
KERNEL32.dll | 269 | GetFileAttributesA | |
KERNEL32.dll | 45 | CreateDirectoryA | |
KERNEL32.dll | 284 | GetLocaleInfoA | |
KERNEL32.dll | 148 | FindFirstFileA | |
KERNEL32.dll | 767 | lstrcmpiA | |
KERNEL32.dll | 448 | LCMapStringW | |
KERNEL32.dll | 157 | FindNextFileA | |
KERNEL32.dll | 144 | FindClose | |
KERNEL32.dll | 260 | GetDriveTypeA | |
KERNEL32.dll | 761 | lstrcatA | |
KERNEL32.dll | 294 | GetModuleHandleA | |
KERNEL32.dll | 450 | LoadLibraryA | |
KERNEL32.dll | 318 | GetProcAddress | |
KERNEL32.dll | 365 | GetTickCount | |
KERNEL32.dll | 662 | Sleep | |
KERNEL32.dll | 249 | GetCurrentThread | |
KERNEL32.dll | 519 | QueryPerformanceFrequency | |
KERNEL32.dll | 518 | QueryPerformanceCounter | |
KERNEL32.dll | 361 | GetThreadPriority | |
KERNEL32.dll | 647 | SetThreadPriority | |
KERNEL32.dll | 399 | GlobalReAlloc | |
KERNEL32.dll | 403 | GlobalUnlock | |
KERNEL32.dll | 392 | GlobalFree | |
KERNEL32.dll | 385 | GlobalAlloc | |
KERNEL32.dll | 396 | GlobalLock | |
KERNEL32.dll | 370 | GetUserDefaultLangID | |
KERNEL32.dll | 483 | MulDiv | |
KERNEL32.dll | 776 | lstrlenA | |
KERNEL32.dll | 282 | GetLastError | |
KERNEL32.dll | 175 | FormatMessageA | |
KERNEL32.dll | 735 | WriteFile | |
KERNEL32.dll | 536 | ReadFile | |
KERNEL32.dll | 770 | lstrcpyA | |
KERNEL32.dll | 618 | SetFilePointer | |
KERNEL32.dll | 52 | CreateFileA | |
KERNEL32.dll | 27 | CloseHandle | |
KERNEL32.dll | 305 | GetOEMCP | |
KERNEL32.dll | 87 | DeleteFileA | |
USER32.dll | 213 | FindWindowA | |
USER32.dll | 396 | IsIconic | |
USER32.dll | 478 | PostMessageA | |
USER32.dll | 501 | RegisterClassW | |
USER32.dll | 498 | RegisterClassA | |
USER32.dll | 581 | SetRectEmpty | |
USER32.dll | 47 | CharUpperA | |
USER32.dll | 211 | ExitWindowsEx | |
USER32.dll | 476 | PeekMessageA | |
USER32.dll | 458 | MsgWaitForMultipleObjects | |
USER32.dll | 298 | GetMessageA | |
USER32.dll | 149 | DispatchMessageA | |
USER32.dll | 466 | OffsetRect | |
USER32.dll | 221 | GetActiveWindow | |
USER32.dll | 185 | EndDialog | |
USER32.dll | 183 | EnableWindow | |
USER32.dll | 212 | FillRect | |
USER32.dll | 603 | SetWindowPos | |
USER32.dll | 408 | LoadBitmapA | |
USER32.dll | 79 | CreateDialogParamA | |
USER32.dll | 528 | SendDlgItemMessageW | |
USER32.dll | 556 | SetDlgItemTextA | |
USER32.dll | 400 | IsWindowEnabled | |
USER32.dll | 326 | GetSystemMetrics | |
USER32.dll | 677 | WaitMessage | |
USER32.dll | 500 | RegisterClassExW | |
USER32.dll | 90 | CreateWindowExW | |
USER32.dll | 232 | GetClassInfoExA | |
USER32.dll | 499 | RegisterClassExA | |
USER32.dll | 240 | GetClientRect | |
USER32.dll | 594 | SetTimer | |
USER32.dll | 402 | IsWindowVisible | |
USER32.dll | 490 | PtInRect | |
USER32.dll | 550 | SetCursor | |
USER32.dll | 378 | InvalidateRect | |
USER32.dll | 260 | GetDlgItemTextA | |
USER32.dll | 480 | PostQuitMessage | |
USER32.dll | 414 | LoadIconA | |
USER32.dll | 416 | LoadImageA | |
USER32.dll | 323 | GetSysColor | |
USER32.dll | 405 | KillTimer | |
USER32.dll | 351 | GetWindowTextLengthA | |
USER32.dll | 392 | IsDialogMessageA | |
USER32.dll | 446 | MessageBoxA | |
USER32.dll | 451 | MessageBoxW | |
USER32.dll | 68 | CopyRect | |
USER32.dll | 607 | SetWindowTextW | |
USER32.dll | 165 | DrawEdge | |
USER32.dll | 527 | SendDlgItemMessageA | |
USER32.dll | 258 | GetDlgItem | |
USER32.dll | 515 | ReleaseDC | |
USER32.dll | 253 | GetDC | |
USER32.dll | 142 | DestroyWindow | |
USER32.dll | 132 | DefWindowProcA | |
USER32.dll | 197 | EnumDisplaySettingsA | |
USER32.dll | 537 | SendMessageW | |
USER32.dll | 233 | GetClassInfoExW | |
USER32.dll | 133 | DefWindowProcW | |
USER32.dll | 348 | GetWindowRect | |
USER32.dll | 255 | GetDesktopWindow | |
USER32.dll | 625 | SystemParametersInfoA | |
USER32.dll | 263 | GetFocus | |
USER32.dll | 342 | GetWindowLongA | |
USER32.dll | 350 | GetWindowTextA | |
USER32.dll | 175 | DrawTextA | |
USER32.dll | 560 | SetForegroundWindow | |
USER32.dll | 147 | DialogBoxParamA | |
USER32.dll | 532 | SendMessageA | |
USER32.dll | 522 | ScreenToClient | |
USER32.dll | 166 | DrawFocusRect | |
USER32.dll | 89 | CreateWindowExA | |
USER32.dll | 600 | SetWindowLongA | |
USER32.dll | 457 | MoveWindow | |
USER32.dll | 559 | SetFocus | |
USER32.dll | 325 | GetSystemMenu | |
USER32.dll | 135 | DeleteMenu | |
USER32.dll | 7 | AppendMenuA | |
USER32.dll | 618 | ShowWindow | |
USER32.dll | 606 | SetWindowTextA | |
USER32.dll | 410 | LoadCursorA | |
USER32.dll | 252 | GetCursorPos | |
USER32.dll | 642 | TranslateMessage | |
GDI32.dll | 482 | SetMapMode | |
GDI32.dll | 502 | SetViewportOrgEx | |
GDI32.dll | 441 | RestoreDC | |
GDI32.dll | 508 | StartDocA | |
GDI32.dll | 511 | StartPage | |
GDI32.dll | 92 | EndPage | |
GDI32.dll | 90 | EndDoc | |
GDI32.dll | 433 | RemoveFontResourceA | |
GDI32.dll | 75 | CreateScalableFontResourceA | |
GDI32.dll | 3 | AddFontResourceA | |
GDI32.dll | 66 | CreatePalette | |
GDI32.dll | 48 | CreateDIBitmap | |
GDI32.dll | 36 | CreateBitmap | |
GDI32.dll | 367 | GetTextExtentPoint32W | |
GDI32.dll | 518 | TextOutW | |
GDI32.dll | 513 | StretchDIBits | |
GDI32.dll | 41 | CreateCompatibleBitmap | |
GDI32.dll | 461 | SetBkColor | |
GDI32.dll | 42 | CreateCompatibleDC | |
GDI32.dll | 351 | GetStockObject | |
GDI32.dll | 77 | CreateSolidBrush | |
GDI32.dll | 499 | SetTextColor | |
GDI32.dll | 517 | TextOutA | |
GDI32.dll | 462 | SetBkMode | |
GDI32.dll | 455 | SelectObject | |
GDI32.dll | 54 | CreateFontA | |
GDI32.dll | 293 | GetDeviceCaps | |
GDI32.dll | 17 | BitBlt | |
GDI32.dll | 80 | DeleteDC | |
GDI32.dll | 83 | DeleteObject | |
GDI32.dll | 448 | SaveDC | |
GDI32.dll | 366 | GetTextExtentPoint32A | |
GDI32.dll | 497 | SetTextAlign | |
comdlg32.dll | 16 | PrintDlgA | |
comdlg32.dll | 9 | GetOpenFileNameA | |
ADVAPI32.dll | 421 | SetSecurityDescriptorDacl | |
ADVAPI32.dll | 379 | RegQueryValueExA | |
ADVAPI32.dll | 370 | RegOpenKeyExA | |
ADVAPI32.dll | 356 | RegDeleteValueA | |
ADVAPI32.dll | 374 | RegQueryInfoKeyA | |
ADVAPI32.dll | 359 | RegEnumKeyExA | |
ADVAPI32.dll | 329 | OpenThreadToken | |
ADVAPI32.dll | 123 | DuplicateToken | |
ADVAPI32.dll | 24 | AllocateAndInitializeSid | |
ADVAPI32.dll | 223 | InitializeSecurityDescriptor | |
ADVAPI32.dll | 173 | GetLengthSid | |
ADVAPI32.dll | 222 | InitializeAcl | |
ADVAPI32.dll | 11 | AddAccessAllowedAce | |
ADVAPI32.dll | 347 | RegCloseKey | |
ADVAPI32.dll | 422 | SetSecurityDescriptorGroup | |
ADVAPI32.dll | 423 | SetSecurityDescriptorOwner | |
ADVAPI32.dll | 232 | IsValidSecurityDescriptor | |
ADVAPI32.dll | 2 | AccessCheck | |
ADVAPI32.dll | 157 | FreeSid | |
ADVAPI32.dll | 215 | GetUserNameA | |
ADVAPI32.dll | 390 | RegSetValueExA | |
ADVAPI32.dll | 351 | RegCreateKeyExA | |
ADVAPI32.dll | 322 | OpenProcessToken | |
ADVAPI32.dll | 245 | LookupPrivilegeValueA | |
ADVAPI32.dll | 23 | AdjustTokenPrivileges | |
SHELL32.dll | 59 | SHChangeNotify | |
SHELL32.dll | 63 | SHFileOperationA | |
SHELL32.dll | 57 | SHBrowseForFolderA | |
SHELL32.dll | 80 | SHGetPathFromIDListA | |
SHELL32.dll | 75 | SHGetMalloc | |
SHELL32.dll | 114 | ShellExecuteA | |
SHELL32.dll | 83 | SHGetSpecialFolderLocation | |
ole32.dll | 13 | CoCreateInstance | |
ole32.dll | 83 | CoUninitialize | |
ole32.dll | 201 | OleInitialize | |
ole32.dll | 224 | OleUninitialize | |
ole32.dll | 45 | CoInitialize | |
OLEAUT32.dll | 161 | ||
OLEAUT32.dll | 163 | ||
WINMM.dll | 83 | midiOutGetNumDevs | |
WINMM.dll | 30 | joyGetPos | |
WINMM.dll | 178 | waveOutGetNumDevs | |
COMCTL32.dll | 33 | ImageList_Create | |
COMCTL32.dll | 28 | ImageList_Add | |
COMCTL32.dll | 17 | ||
VERSION.dll | 1 | GetFileVersionInfoSizeA | |
VERSION.dll | GetFileVersionInfoA | ||
VERSION.dll | 10 | VerQueryValueA |
Scanning the drive for archives: 1 file, 2369379 bytes (2314 KiB) -- Type = gzip ERRORS: There are data after the end of archive Offset = 230009 Physical Size = 18201 Tail Size = 2121169 Headers Size = 10 Streams = 1 Date Time Attr Size Compressed Name ------------------- ----- ------------ ------------ ------------------------ ..... 58316 18201 data~ ------------------- ----- ------------ ------------ ------------------------ 58316 18201 1 files Warnings: 1 Errors: 1
Please donate some bucks to keep this site up and running: | |
Ko-fi | |
---|---|
Yandex.Money | |
Thank you! |
everything is OK