找回密码
 加入
搜索
查看: 2203|回复: 3

请高手帮我看看这个!!!

[复制链接]
发表于 2008-11-12 14:05:36 | 显示全部楼层 |阅读模式
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x1005f984
timedatestamp.....: 0x49145f7c (Fri Nov 07 15:32:12 2008)
machinetype.......: 0x14c (I386)

( 5 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0x859c9 0x86000 6.71 845c5ce256852b1206bc501555bf648b
.rdata 0x87000 0x1da50 0x1e000 5.98 00c4bbeaefbc1b9c0a366c9f5fbfdb89
.data 0xa5000 0x46da8 0x3000 4.40 9217eaf93393a7b649ed1f821e87b1ff
.rsrc 0xec000 0x32c8 0x4000 4.62 2da69c83331daa581937d4ad7f2b3fec
.reloc 0xf0000 0x8b6b3 0x8b6b3 7.90 398a2b4af573554b164264e323ff381e

( 10 imports )
> KERNEL32.dll: LocalAlloc, TlsGetValue, GlobalReAlloc, GlobalHandle, TlsAlloc, TlsSetValue, LocalReAlloc, TlsFree, SetErrorMode, GlobalFlags, InterlockedIncrement, MoveFileA, DeleteFileA, GetThreadLocale, WriteFile, SetFilePointer, FlushFileBuffers, SetEndOfFile, DuplicateHandle, GetFullPathNameA, GetCPInfo, GetOEMCP, GetFileAttributesA, UnhandledExceptionFilter, SetUnhandledExceptionFilter, IsDebuggerPresent, RtlUnwind, RaiseException, VirtualAlloc, GetProcessHeap, ExitProcess, GetSystemTimeAsFileTime, GetTimeFormatA, GetDateFormatA, CreateProcessA, HeapSize, GetACP, IsValidCodePage, LCMapStringA, LCMapStringW, VirtualFree, GetStdHandle, SetHandleCount, GetFileType, GetStartupInfoA, FreeEnvironmentStringsA, GetEnvironmentStrings, FreeEnvironmentStringsW, GetEnvironmentStringsW, GetStringTypeA, GetStringTypeW, GetTimeZoneInformation, GetUserDefaultLCID, EnumSystemLocalesA, IsValidLocale, CreatePipe, GetExitCodeProcess, GetConsoleCP, GetConsoleMode, SetEnvironmentVariableA, SetEnvironmentVariableW, GetDriveTypeA, GetLocaleInfoW, SetStdHandle, WriteConsoleA, GetConsoleOutputCP, WriteConsoleW, FindFirstFileA, FileTimeToLocalFileTime, FileTimeToSystemTime, FindNextFileA, FindClose, GlobalFree, GlobalUnlock, LocalFree, MulDiv, InterlockedDecrement, GetModuleFileNameW, FreeResource, GlobalGetAtomNameA, GlobalFindAtomA, lstrcmpW, SetLastError, GlobalAddAtomA, CreateEventA, GlobalDeleteAtom, GetCurrentThread, GetCurrentThreadId, ConvertDefaultLocale, EnumResourceLanguagesA, GetLocaleInfoA, GlobalLock, lstrcmpA, GlobalAlloc, QueryPerformanceFrequency, QueryPerformanceCounter, FormatMessageA, OutputDebugStringW, WinExec, GetWindowsDirectoryA, LoadLibraryA, FreeLibrary, ReadFile, CreateFileA, WritePrivateProfileStringA, GetPrivateProfileIntA, GetPrivateProfileStringA, HeapAlloc, HeapReAlloc, HeapFree, HeapDestroy, HeapCreate, GetLastError, lstrlenA, CompareStringA, CompareStringW, MultiByteToWideChar, GetVersion, InterlockedExchange, EnterCriticalSection, InitializeCriticalSection, SetEvent, WaitForSingleObject, LeaveCriticalSection, GetCommandLineA, GetCurrentDirectoryA, GetTickCount, TerminateProcess, GetVersionExA, DeleteCriticalSection, LoadResource, LockResource, SizeofResource, FindResourceA, WideCharToMultiByte, CreateThread, CloseHandle, GetModuleFileNameA, Sleep, GetModuleHandleA, GetProcAddress, GetCurrentProcessId, OutputDebugStringA, WriteProcessMemory, VirtualProtectEx, ReadProcessMemory, GetCurrentProcess
> USER32.dll: EndPaint, UnregisterClassA, GetSysColorBrush, DestroyMenu, SetForegroundWindow, UpdateWindow, GetMenu, GetSubMenu, GetMenuItemID, GetMenuItemCount, CreateWindowExA, GetClassInfoExA, GetClassInfoA, AdjustWindowRectEx, CopyRect, GetDlgCtrlID, DefWindowProcA, SetWindowPos, SystemParametersInfoA, IsIconic, GetWindowPlacement, GetSystemMetrics, GetWindow, GetWindowLongA, GetLastActivePopup, IsWindowEnabled, SetWindowsHookExA, GetMessageA, TranslateMessage, DispatchMessageA, GetActiveWindow, CreateDialogIndirectParamA, GetKeyState, PeekMessageA, BeginPaint, ValidateRect, SetMenuItemBitmaps, GetMenuCheckMarkDimensions, LoadBitmapA, GetFocus, ModifyMenuA, GetMenuState, EnableMenuItem, CheckMenuItem, PostMessageA, PostQuitMessage, RegisterWindowMessageA, LoadCursorA, CopyIcon, GetParent, GetDC, ReleaseDC, InflateRect, RedrawWindow, IsWindow, GetSysColor, SetCursor, GetMessagePos, ScreenToClient, PtInRect, InvalidateRect, MessageBeep, GetClientRect, DestroyCursor, EnableWindow, KillTimer, LoadIconA, SendMessageA, GetNextDlgTabItem, EndDialog, ShowCursor, SetTimer, CallNextHookEx, UnhookWindowsHookEx, GetWindowRect, CallWindowProcA, SetWindowLongA, MessageBoxA, EnumWindows, GetWindowThreadProcessId, GetClassNameA, GetWindowTextA, wsprintfA, ClientToScreen, GrayStringA, DrawTextExA, DrawTextA, TabbedTextOutA, WindowFromPoint, GetCursorPos, GetDesktopWindow, ShowWindow, MoveWindow, SetWindowTextA, IsDialogMessageA, SendDlgItemMessageA, WinHelpA, GetCapture, GetClassLongA, SetPropA, GetPropA, RemovePropA, SetFocus, GetWindowTextLengthA, GetForegroundWindow, SetActiveWindow, GetDlgItem, GetTopWindow, DestroyWindow, GetMessageTime, IsWindowVisible, MapWindowPoints, RegisterClassA
> GDI32.dll: RestoreDC, SetBkMode, SetMapMode, DeleteObject, PtVisible, RectVisible, TextOutA, ExtTextOutA, SaveDC, SelectObject, SetViewportOrgEx, OffsetViewportOrgEx, SetViewportExtEx, ScaleViewportExtEx, SetWindowExtEx, ScaleWindowExtEx, DeleteDC, GetDeviceCaps, SetBkColor, SetTextColor, GetClipBox, CreateBitmap, GetTextExtentPoint32A, GetStockObject, Escape, CreateFontIndirectA, GetObjectA
> WINSPOOL.DRV: ClosePrinter, DocumentPropertiesA, OpenPrinterA
> ADVAPI32.dll: RegSetValueExA, RegCreateKeyExA, RegOpenKeyA, RegEnumKeyA, RegDeleteKeyA, RegQueryValueExA, RegOpenKeyExA, RegQueryValueA, RegCloseKey
> SHELL32.dll: ShellExecuteA
> SHLWAPI.dll: PathFindFileNameA, PathFindExtensionA
> OLEAUT32.dll: -, -, -
> VERSION.dll: GetFileVersionInfoSizeA, GetFileVersionInfoA, VerQueryValueA
> WS2_32.dll: -, -, -, WSASocketA, -, -, -, -, -, -, -, -, -

( 0 exports )

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有账号?加入

×

评分

参与人数 1金钱 -2 收起 理由
sanhen -2 标题模糊、不明确。

查看全部评分

发表于 2008-11-12 14:23:08 | 显示全部楼层
乱七八糟
发表于 2008-11-12 20:26:19 | 显示全部楼层
这是什么东东??
处女贴就被杀!

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有账号?加入

×
发表于 2008-11-13 15:22:11 | 显示全部楼层
贴这样的东西出来,至少也得说个问题方向!!!
您需要登录后才可以回帖 登录 | 加入

本版积分规则

QQ|手机版|小黑屋|AUTOIT CN ( 鲁ICP备19019924号-1 )谷歌 百度

GMT+8, 2024-12-23 03:20 , Processed in 0.092003 second(s), 29 queries .

Powered by Discuz! X3.5 Licensed

© 2001-2024 Discuz! Team.

快速回复 返回顶部 返回列表