2015-11-06 04:42:45
aspnet_state.pdb
60545a3360b6ace185c9d943f22cffdf
Name | Virtual Address | Virtual Size | Size of Raw Data | Entropy |
---|---|---|---|---|
.text | 0x00001000 | 0x00004fac | 0x00005000 | 6.23377986551 |
.rdata | 0x00006000 | 0x0000205e | 0x00002200 | 4.59392999273 |
.data | 0x00009000 | 0x00001830 | 0x00000200 | 1.82846938786 |
.pdata | 0x0000b000 | 0x00000690 | 0x00000800 | 3.72416397864 |
.rsrc | 0x0000c000 | 0x0000077c | 0x00000800 | 4.76565080605 |
.reloc | 0x0000d000 | 0x0016f000 | 0x0016e000 | 3.98566860353 |
Name | Offset | Size | Language | Sub-language | File type |
---|---|---|---|---|---|
RT_VERSION | 0x0000c0a0 | 0x000003fc | LANG_ENGLISH | SUBLANG_ENGLISH_US | data |
RT_MANIFEST | 0x0000c49c | 0x000002e0 | LANG_ENGLISH | SUBLANG_ENGLISH_US | ASCII text, with very long lines (736), with no line terminators |
Ordinal | Address | Name |
---|---|---|
1 | 0x140002acc | STWNDCloseConnection |
2 | 0x140002ad4 | STWNDDeleteStateItem |
3 | 0x140002adc | STWNDEndOfRequest |
4 | 0x140002ae4 | STWNDGetLocalAddress |
5 | 0x140002aec | STWNDGetLocalPort |
6 | 0x140002af4 | STWNDGetRemoteAddress |
7 | 0x140002afc | STWNDGetRemotePort |
8 | 0x140002b04 | STWNDIsClientConnected |
9 | 0x140002b0c | STWNDSendResponse |
IRMA | Signature |
---|---|
Trend Micro SProtect (Linux) | Clean |
Avast Core Security (Linux) | Win64:Expiro-AJ [Inf] |
C4S ClamAV (Linux) | Win.Virus.Expiro-9955276-0 |
Trellix (Linux) | Clean |
Sophos Anti-Virus (Linux) | W64/Moiva-B |
Bitdefender Antivirus (Linux) | Win64.Expiro.Gen.7 |
G Data Antivirus (Windows) | Virus: Win64.Expiro.Gen.7 (Engine A) |
WithSecure (Linux) | Malware.W32/Infector.Gen |
ESET Security (Windows) | a variant of Win64/Expiro.CQ virus |
DrWeb Antivirus (Linux) | Win32.Expiro.153 |
ClamAV (Linux) | Win.Virus.Expiro-9955276-0 |
eScan Antivirus (Linux) | Win64.Expiro.Gen.7(DB) |
Kaspersky Standard (Windows) | Virus.Win64.Moiva.a |
Emsisoft Commandline Scanner (Windows) | Win64.Expiro.Gen.7 (B) |