| boo/sinowal.A Also wie erwartet ist das Ergebis eher ernüchternd für meine Nerven
Also ich gehe die Dateien der Reihe nach durch wie oben angegeben.
Datei1: Zitat:
Datei spoolsv.exe empfangen 2008.11.06 20:27:23 (CET)
Status: Beendet
Ergebnis: 4/36 (11.12%)
Antivirus Version letzte
aktualisierung Ergebnis
AhnLab-V3 2008.11.5.3 2008.11.06 -
AntiVir 7.9.0.26 2008.11.06 -
Authentium 5.1.0.4 2008.11.06 -
Avast 4.8.1248.0 2008.11.06 -
AVG 8.0.0.161 2008.11.06 -
BitDefender 7.2 2008.11.06 -
CAT-QuickHeal 9.50 2008.11.04 -
ClamAV 0.94.1 2008.11.06 -
DrWeb 4.44.0.09170 2008.11.06 -
eSafe 7.0.17.0 2008.11.06 -
eTrust-Vet 31.6.6195 2008.11.06 -
Ewido 4.0 2008.11.06 -
F-Prot 4.4.4.56 2008.11.06 -
F-Secure 8.0.14332.0 2008.11.06 -
Fortinet 3.117.0.0 2008.11.06 -
GData 19 2008.11.06 -
Ikarus T3.1.1.45.0 2008.11.06 -
K7AntiVirus 7.10.518 2008.11.06 -
Kaspersky 7.0.0.125 2008.11.06 Heur.Trojan.Generic
McAfee 5425 2008.11.05 -
Microsoft 1.4005 2008.11.06 -
NOD32 3592 2008.11.06 -
Norman 5.80.02 2008.11.06 -
Panda 9.0.0.4 2008.11.05 Suspicious file
PCTools 4.4.2.0 2008.11.06 -
Prevx1 V2 2008.11.06 Cloaked Malware
Rising 21.02.32.00 2008.11.06 -
SecureWeb-
Gateway 6.7.6 2008.11.06 -
Sophos 4.35.0 2008.11.06 -
Sunbelt 3.1.1783.2 2008.11.05 BehavesLike.Win32.Malware
(v)
Symantec 10 2008.11.06 -
TheHacker 6.3.1.1.141 2008.11.05 -
TrendMicro 8.700.0.1004 2008.11.06 -
VBA32 3.12.8.9 2008.11.05 -
ViRobot 2008.11.6.1455 2008.11.06 -
VirusBuster 4.5.11.0 2008.11.06 -
weitere Informationen
File size: 81920 bytes
MD5...: d59ddcfa25e656592b27d2038dcf4bf1
SHA1..: 6bf9ecd1b16f6c14a9af7931a56815ae241f196a
SHA256: 6f51d4df7f2ca369a42ac4dec2c574113907ae9fe3c0829e7a73ef97033179e1
SHA512: f5ac184bd8aa3814c87119bf16d7f6f748cde6e8c1393baa9afdb51c833dda56
db4195c506c4d7da30a724c545a638563548e53542f15e9138bb14e8ab60648e
PEiD..: -
TrID..: File type identification
Win32 Executable MS Visual C++ (generic) (65.2%)
Win32 Executable Generic (14.7%)
Win32 Dynamic Link Library (generic) (13.1%)
Generic Win/DOS Executable (3.4%)
DOS Executable Generic (3.4%)
PEInfo: PE Structure information
( base data )
entrypointaddress.: 0x40aa86
timedatestamp.....: 0x4912ee9b (Thu Nov 06 13:18:19 2008)
machinetype.......: 0x14c (I386)
( 3 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0xf31f 0x10000 6.20 3f506aae14d326257effb5567da4be84
.rdata 0x11000 0x1fe2 0x2000 5.47 bf8feebb91f1de1e73205b67ae669831
.data 0x13000 0x3798 0x1000 1.46 0dbdc1740125e785bdfcadcd8bdf6e95
( 6 imports )
> USER32.dll: LoadImageA
> ADVAPI32.dll: RegCloseKey, RegEnumValueA, RegGetKeySecurity,
RegOpenKeyExA, RegCreateKeyExA, RegSetValueExA, RegQueryValueExA,
LookupAccountSidA, GetTokenInformation, OpenProcessToken
> WS2_32.dll: -, -
> WININET.dll: InternetReadFile, HttpQueryInfoA, InternetCloseHandle,
InternetOpenUrlA, InternetOpenA
> NETAPI32.dll: NetUserGetInfo, NetApiBufferFree
> KERNEL32.dll: SetEnvironmentVariableA, GetSystemInfo, VirtualProtect,
GetLocaleInfoA, FlushFileBuffers, GetStringTypeW, GetStringTypeA,
LCMapStringW, LCMapStringA, SetStdHandle, GetCPInfo, GetOEMCP, GetACP,
GetVolumeInformationA, GetSystemDirectoryA, CreateDirectoryA,GetStartupInfoA, GetFileType, OpenProcess, GetFileTime,
GetProcessPriorityBoost, OpenMutexA, CreateMutexA, CloseHandle,
GetDriveTypeA, GetLogicalDriveStringsA, Sleep, GetLastError,
GetLocalTime, GetShortPathNameA, GetEnvironmentVariableA, ExitProcess,
SetFileAttributesA, CreateFileA, CreateProcessA, GlobalFree,
CreateThread, GlobalAlloc, MultiByteToWideChar, GetModuleFileNameA,
GetCurrentProcess, CopyFileA, WriteFile, RtlUnwind,
GetSystemTimeAsFileTime, GetProcAddress, GetModuleHandleA,
TerminateProcess, GetCommandLineA, GetVersionExA,
QueryPerformanceCounter, GetTickCount, GetCurrentThreadId,
GetCurrentProcessId, HeapReAlloc, HeapAlloc, HeapSize, GetStdHandle,
UnhandledExceptionFilter, FreeEnvironmentStringsA, GetEnvironmentStrings,
FreeEnvironmentStringsW, WideCharToMultiByte, GetEnvironmentStringsW,
SetHandleCount, HeapDestroy, HeapCreate, VirtualFree, HeapFree,
LoadLibraryA, InterlockedExchange, VirtualQuery, SetFilePointer,
SetUnhandledExceptionFilter, IsBadReadPtr, IsBadWritePtr, IsBadCodePtr,
VirtualAlloc
( 0 exports )
Prevx info: http://info.prevx.com
/aboutprogramtext.asp?PX5=B617C071008CE0F7409B01EA798B8A00B73DD4C9
|
Datei2: Zitat:
Datei mqtgsvc.exe empfangen 2008.11.06 20:31:20 (CET)
Status: Beendet
Ergebnis: 4/36 (11.12%)
Antivirus Version letzte
aktualisierung Ergebnis
AhnLab-V3 2008.11.5.3 2008.11.06 -
AntiVir 7.9.0.26 2008.11.06 -
Authentium 5.1.0.4 2008.11.06 -
Avast 4.8.1248.0 2008.11.06 -
AVG 8.0.0.161 2008.11.06 -
BitDefender 7.2 2008.11.06 -
CAT-QuickHeal 9.50 2008.11.04 -
ClamAV 0.94.1 2008.11.06 -
DrWeb 4.44.0.09170 2008.11.06 -
eSafe 7.0.17.0 2008.11.06 -
eTrust-Vet 31.6.6195 2008.11.06 -
Ewido 4.0 2008.11.06 -
F-Prot 4.4.4.56 2008.11.06 -
F-Secure 8.0.14332.0 2008.11.06 -
Fortinet 3.117.0.0 2008.11.06 -
GData 19 2008.11.06 -
Ikarus T3.1.1.45.0 2008.11.06 -
K7AntiVirus 7.10.518 2008.11.06 -
Kaspersky 7.0.0.125 2008.11.06 Heur.Trojan.Generic
McAfee 5425 2008.11.05 -
Microsoft 1.4005 2008.11.06 -
NOD32 3592 2008.11.06 -
Norman 5.80.02 2008.11.06 -
Panda 9.0.0.4 2008.11.05 Suspicious file
PCTools 4.4.2.0 2008.11.06 -
Prevx1 V2 2008.11.06 Cloaked Malware
Rising 21.02.32.00 2008.11.06 -
SecureWeb-
Gateway 6.7.6 2008.11.06 -
Sophos 4.35.0 2008.11.06 -
Sunbelt 3.1.1783.2 2008.11.05 BehavesLike.Win32.Malware
(v)
Symantec 10 2008.11.06 -
TheHacker 6.3.1.1.141 2008.11.05 -
TrendMicro 8.700.0.1004 2008.11.06 -
VBA32 3.12.8.9 2008.11.05 -
ViRobot 2008.11.6.1455 2008.11.06 -
VirusBuster 4.5.11.0 2008.11.06 -
weitere Informationen
File size: 81920 bytes
MD5...: d59ddcfa25e656592b27d2038dcf4bf1
SHA1..: 6bf9ecd1b16f6c14a9af7931a56815ae241f196a
SHA256: 6f51d4df7f2ca369a42ac4dec2c574113907ae9fe3c0829e7a73ef97033179e1
SHA512: f5ac184bd8aa3814c87119bf16d7f6f748cde6e8c1393baa9afdb51c833dda56
db4195c506c4d7da30a724c545a638563548e53542f15e9138bb14e8ab60648e
PEiD..: -
TrID..: File type identification
Win32 Executable MS Visual C++ (generic) (65.2%)
Win32 Executable Generic (14.7%)
Win32 Dynamic Link Library (generic) (13.1%)
Generic Win/DOS Executable (3.4%)
DOS Executable Generic (3.4%)
PEInfo: PE Structure information
( base data )
entrypointaddress.: 0x40aa86
timedatestamp.....: 0x4912ee9b (Thu Nov 06 13:18:19 2008)
machinetype.......: 0x14c (I386)
( 3 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0xf31f 0x10000 6.20 3f506aae14d326257effb5567da4be84
.rdata 0x11000 0x1fe2 0x2000 5.47 bf8feebb91f1de1e73205b67ae669831
.data 0x13000 0x3798 0x1000 1.46 0dbdc1740125e785bdfcadcd8bdf6e95
( 6 imports )
> USER32.dll: LoadImageA
> ADVAPI32.dll: RegCloseKey, RegEnumValueA, RegGetKeySecurity,
RegOpenKeyExA, RegCreateKeyExA, RegSetValueExA, RegQueryValueExA,
LookupAccountSidA, GetTokenInformation, OpenProcessToken
> WS2_32.dll: -, -
> WININET.dll: InternetReadFile, HttpQueryInfoA, InternetCloseHandle,
InternetOpenUrlA, InternetOpenA
> NETAPI32.dll: NetUserGetInfo, NetApiBufferFree
> KERNEL32.dll: SetEnvironmentVariableA, GetSystemInfo, VirtualProtect,
GetLocaleInfoA, FlushFileBuffers, GetStringTypeW, GetStringTypeA,
LCMapStringW, LCMapStringA, SetStdHandle, GetCPInfo, GetOEMCP, GetACP,
GetVolumeInformationA, GetSystemDirectoryA, CreateDirectoryA,GetStartupInfoA, GetFileType, OpenProcess, GetFileTime,
GetProcessPriorityBoost, OpenMutexA, CreateMutexA, CloseHandle,
GetDriveTypeA, GetLogicalDriveStringsA, Sleep, GetLastError,
GetLocalTime, GetShortPathNameA, GetEnvironmentVariableA, ExitProcess,
SetFileAttributesA, CreateFileA, CreateProcessA, GlobalFree,
CreateThread, GlobalAlloc, MultiByteToWideChar, GetModuleFileNameA,
GetCurrentProcess, CopyFileA, WriteFile, RtlUnwind,
GetSystemTimeAsFileTime, GetProcAddress, GetModuleHandleA,
TerminateProcess, GetCommandLineA, GetVersionExA,
QueryPerformanceCounter, GetTickCount, GetCurrentThreadId,
GetCurrentProcessId, HeapReAlloc, HeapAlloc, HeapSize, GetStdHandle,
UnhandledExceptionFilter, FreeEnvironmentStringsA, GetEnvironmentStrings,
FreeEnvironmentStringsW, WideCharToMultiByte, GetEnvironmentStringsW,
SetHandleCount, HeapDestroy, HeapCreate, VirtualFree, HeapFree,
LoadLibraryA, InterlockedExchange, VirtualQuery, SetFilePointer,
SetUnhandledExceptionFilter, IsBadReadPtr, IsBadWritePtr, IsBadCodePtr,
VirtualAlloc
( 0 exports )
Prevx info: http://info.prevx.com
/aboutprogramtext.asp?PX5=B617C071008CE0F7409B01EA798B8A00B73DD4C9 |
Datei3: Zitat:
Datei comrepl.exe empfangen 2008.11.06 20:33:03 (CET)
Status: Beendet
Ergebnis: 4/36 (11.12%)
Antivirus Version letzte
aktualisierung Ergebnis
AhnLab-V3 2008.11.5.3 2008.11.06 -
AntiVir 7.9.0.26 2008.11.06 -
Authentium 5.1.0.4 2008.11.06 -
Avast 4.8.1248.0 2008.11.06 -
AVG 8.0.0.161 2008.11.06 -
BitDefender 7.2 2008.11.06 -
CAT-QuickHeal 9.50 2008.11.04 -
ClamAV 0.94.1 2008.11.06 -
DrWeb 4.44.0.09170 2008.11.06 -
eSafe 7.0.17.0 2008.11.06 -
eTrust-Vet 31.6.6195 2008.11.06 -
Ewido 4.0 2008.11.06 -
F-Prot 4.4.4.56 2008.11.06 -
F-Secure 8.0.14332.0 2008.11.06 -
Fortinet 3.117.0.0 2008.11.06 -
GData 19 2008.11.06 -
Ikarus T3.1.1.45.0 2008.11.06 -
K7AntiVirus 7.10.518 2008.11.06 -
Kaspersky 7.0.0.125 2008.11.06 Heur.Trojan.Generic
McAfee 5425 2008.11.05 -
Microsoft 1.4005 2008.11.06 -
NOD32 3592 2008.11.06 -
Norman 5.80.02 2008.11.06 -
Panda 9.0.0.4 2008.11.05 Suspicious file
PCTools 4.4.2.0 2008.11.06 -
Prevx1 V2 2008.11.06 Cloaked Malware
Rising 21.02.32.00 2008.11.06 -
SecureWeb-
Gateway 6.7.6 2008.11.06 -
Sophos 4.35.0 2008.11.06 -
Sunbelt 3.1.1783.2 2008.11.05 BehavesLike.Win32.Malware
(v)
Symantec 10 2008.11.06 -
TheHacker 6.3.1.1.141 2008.11.05 -
TrendMicro 8.700.0.1004 2008.11.06 -
VBA32 3.12.8.9 2008.11.05 -
ViRobot 2008.11.6.1455 2008.11.06 -
VirusBuster 4.5.11.0 2008.11.06 -
weitere Informationen
File size: 81920 bytes
MD5...: d59ddcfa25e656592b27d2038dcf4bf1
SHA1..: 6bf9ecd1b16f6c14a9af7931a56815ae241f196a
SHA256: 6f51d4df7f2ca369a42ac4dec2c574113907ae9fe3c0829e7a73ef97033179e1
SHA512: f5ac184bd8aa3814c87119bf16d7f6f748cde6e8c1393baa9afdb51c833dda56
db4195c506c4d7da30a724c545a638563548e53542f15e9138bb14e8ab60648e
PEiD..: -
TrID..: File type identification
Win32 Executable MS Visual C++ (generic) (65.2%)
Win32 Executable Generic (14.7%)
Win32 Dynamic Link Library (generic) (13.1%)
Generic Win/DOS Executable (3.4%)
DOS Executable Generic (3.4%)
PEInfo: PE Structure information
( base data )
entrypointaddress.: 0x40aa86
timedatestamp.....: 0x4912ee9b (Thu Nov 06 13:18:19 2008)
machinetype.......: 0x14c (I386)
( 3 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0xf31f 0x10000 6.20 3f506aae14d326257effb5567da4be84
.rdata 0x11000 0x1fe2 0x2000 5.47 bf8feebb91f1de1e73205b67ae669831
.data 0x13000 0x3798 0x1000 1.46 0dbdc1740125e785bdfcadcd8bdf6e95
( 6 imports )
> USER32.dll: LoadImageA
> ADVAPI32.dll: RegCloseKey, RegEnumValueA, RegGetKeySecurity,
RegOpenKeyExA, RegCreateKeyExA, RegSetValueExA, RegQueryValueExA,
LookupAccountSidA, GetTokenInformation, OpenProcessToken
> WS2_32.dll: -, -
> WININET.dll: InternetReadFile, HttpQueryInfoA, InternetCloseHandle,
InternetOpenUrlA, InternetOpenA
> NETAPI32.dll: NetUserGetInfo, NetApiBufferFree
> KERNEL32.dll: SetEnvironmentVariableA, GetSystemInfo, VirtualProtect,
GetLocaleInfoA, FlushFileBuffers, GetStringTypeW, GetStringTypeA,
LCMapStringW, LCMapStringA, SetStdHandle, GetCPInfo, GetOEMCP, GetACP,
GetVolumeInformationA, GetSystemDirectoryA, CreateDirectoryA,GetStartupInfoA, GetFileType, OpenProcess, GetFileTime,
GetProcessPriorityBoost, OpenMutexA, CreateMutexA, CloseHandle,
GetDriveTypeA, GetLogicalDriveStringsA, Sleep, GetLastError,
GetLocalTime, GetShortPathNameA, GetEnvironmentVariableA, ExitProcess,
SetFileAttributesA, CreateFileA, CreateProcessA, GlobalFree,
CreateThread, GlobalAlloc, MultiByteToWideChar, GetModuleFileNameA,
GetCurrentProcess, CopyFileA, WriteFile, RtlUnwind,
GetSystemTimeAsFileTime, GetProcAddress, GetModuleHandleA,
TerminateProcess, GetCommandLineA, GetVersionExA,
QueryPerformanceCounter, GetTickCount, GetCurrentThreadId,
GetCurrentProcessId, HeapReAlloc, HeapAlloc, HeapSize, GetStdHandle,
UnhandledExceptionFilter, FreeEnvironmentStringsA, GetEnvironmentStrings,
FreeEnvironmentStringsW, WideCharToMultiByte, GetEnvironmentStringsW,
SetHandleCount, HeapDestroy, HeapCreate, VirtualFree, HeapFree,
LoadLibraryA, InterlockedExchange, VirtualQuery, SetFilePointer,
SetUnhandledExceptionFilter, IsBadReadPtr, IsBadWritePtr, IsBadCodePtr,
VirtualAlloc
( 0 exports )
Prevx info: http://info.prevx.com
/aboutprogramtext.asp?PX5=B617C071008CE0F7409B01EA798B8A00B73DD4C9 |
Datei4: Zitat:
Datei cisvc.exe empfangen 2008.11.06 20:36:13 (CET)
Status: Beendet
Ergebnis: 4/36 (11.12%)
Antivirus Version letzte
aktualisierung Ergebnis
AhnLab-V3 2008.11.5.3 2008.11.06 -
AntiVir 7.9.0.26 2008.11.06 -
Authentium 5.1.0.4 2008.11.06 -
Avast 4.8.1248.0 2008.11.06 -
AVG 8.0.0.161 2008.11.06 -
BitDefender 7.2 2008.11.06 -
CAT-QuickHeal 9.50 2008.11.04 -
ClamAV 0.94.1 2008.11.06 -
DrWeb 4.44.0.09170 2008.11.06 -
eSafe 7.0.17.0 2008.11.06 -
eTrust-Vet 31.6.6195 2008.11.06 -
Ewido 4.0 2008.11.06 -
F-Prot 4.4.4.56 2008.11.06 -
F-Secure 8.0.14332.0 2008.11.06 -
Fortinet 3.117.0.0 2008.11.06 -
GData 19 2008.11.06 -
Ikarus T3.1.1.45.0 2008.11.06 -
K7AntiVirus 7.10.518 2008.11.06 -
Kaspersky 7.0.0.125 2008.11.06 Heur.Trojan.Generic
McAfee 5425 2008.11.05 -
Microsoft 1.4005 2008.11.06 -
NOD32 3592 2008.11.06 -
Norman 5.80.02 2008.11.06 -
Panda 9.0.0.4 2008.11.05 Suspicious file
PCTools 4.4.2.0 2008.11.06 -
Prevx1 V2 2008.11.06 Cloaked Malware
Rising 21.02.32.00 2008.11.06 -
SecureWeb-
Gateway 6.7.6 2008.11.06 -
Sophos 4.35.0 2008.11.06 -
Sunbelt 3.1.1783.2 2008.11.05 BehavesLike.Win32.Malware
(v)
Symantec 10 2008.11.06 -
TheHacker 6.3.1.1.141 2008.11.05 -
TrendMicro 8.700.0.1004 2008.11.06 -
VBA32 3.12.8.9 2008.11.05 -
ViRobot 2008.11.6.1455 2008.11.06 -
VirusBuster 4.5.11.0 2008.11.06 -
weitere Informationen
File size: 81920 bytes
MD5...: d59ddcfa25e656592b27d2038dcf4bf1
SHA1..: 6bf9ecd1b16f6c14a9af7931a56815ae241f196a
SHA256: 6f51d4df7f2ca369a42ac4dec2c574113907ae9fe3c0829e7a73ef97033179e1
SHA512: f5ac184bd8aa3814c87119bf16d7f6f748cde6e8c1393baa9afdb51c833dda56
db4195c506c4d7da30a724c545a638563548e53542f15e9138bb14e8ab60648e
PEiD..: -
TrID..: File type identification
Win32 Executable MS Visual C++ (generic) (65.2%)
Win32 Executable Generic (14.7%)
Win32 Dynamic Link Library (generic) (13.1%)
Generic Win/DOS Executable (3.4%)
DOS Executable Generic (3.4%)
PEInfo: PE Structure information
( base data )
entrypointaddress.: 0x40aa86
timedatestamp.....: 0x4912ee9b (Thu Nov 06 13:18:19 2008)
machinetype.......: 0x14c (I386)
( 3 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0xf31f 0x10000 6.20 3f506aae14d326257effb5567da4be84
.rdata 0x11000 0x1fe2 0x2000 5.47 bf8feebb91f1de1e73205b67ae669831
.data 0x13000 0x3798 0x1000 1.46 0dbdc1740125e785bdfcadcd8bdf6e95
( 6 imports )
> USER32.dll: LoadImageA
> ADVAPI32.dll: RegCloseKey, RegEnumValueA, RegGetKeySecurity,
RegOpenKeyExA, RegCreateKeyExA, RegSetValueExA, RegQueryValueExA,
LookupAccountSidA, GetTokenInformation, OpenProcessToken
> WS2_32.dll: -, -
> WININET.dll: InternetReadFile, HttpQueryInfoA, InternetCloseHandle,
InternetOpenUrlA, InternetOpenA
> NETAPI32.dll: NetUserGetInfo, NetApiBufferFree
> KERNEL32.dll: SetEnvironmentVariableA, GetSystemInfo, VirtualProtect,
GetLocaleInfoA, FlushFileBuffers, GetStringTypeW, GetStringTypeA,
LCMapStringW, LCMapStringA, SetStdHandle, GetCPInfo, GetOEMCP, GetACP,
GetVolumeInformationA, GetSystemDirectoryA, CreateDirectoryA,GetStartupInfoA, GetFileType, OpenProcess, GetFileTime,
GetProcessPriorityBoost, OpenMutexA, CreateMutexA, CloseHandle,
GetDriveTypeA, GetLogicalDriveStringsA, Sleep, GetLastError,
GetLocalTime, GetShortPathNameA, GetEnvironmentVariableA, ExitProcess,
SetFileAttributesA, CreateFileA, CreateProcessA, GlobalFree,
CreateThread, GlobalAlloc, MultiByteToWideChar, GetModuleFileNameA,
GetCurrentProcess, CopyFileA, WriteFile, RtlUnwind,
GetSystemTimeAsFileTime, GetProcAddress, GetModuleHandleA,
TerminateProcess, GetCommandLineA, GetVersionExA,
QueryPerformanceCounter, GetTickCount, GetCurrentThreadId,
GetCurrentProcessId, HeapReAlloc, HeapAlloc, HeapSize, GetStdHandle,
UnhandledExceptionFilter, FreeEnvironmentStringsA, GetEnvironmentStrings,
FreeEnvironmentStringsW, WideCharToMultiByte, GetEnvironmentStringsW,
SetHandleCount, HeapDestroy, HeapCreate, VirtualFree, HeapFree,
LoadLibraryA, InterlockedExchange, VirtualQuery, SetFilePointer,
SetUnhandledExceptionFilter, IsBadReadPtr, IsBadWritePtr, IsBadCodePtr,
VirtualAlloc
( 0 exports )
Prevx info: http://info.prevx.com
/aboutprogramtext.asp?PX5=B617C071008CE0F7409B01EA798B8A00B73DD4C9
|
so weiter gehts ... |