sub_outside(): KERNEL32.GetModuleHandleA KERNEL32.VirtualFree NTDLL.RtlFreeHeap KERNEL32.HeapDestroy |
_WinMain16(): KERNEL32.GetModuleFileNameA KERNEL32.SetFileAttributesA KERNEL32.VirtualAlloc |
sub_401000(5caa): "Offset to PE Header = \n" "File size too small\n" |
sub_4013B9(7ccc): KERNEL32.GetModuleFileNameA KERNEL32.CreateProcessA KERNEL32.GetThreadContext KERNEL32.ReadProcessMemory KERNEL32.VirtualQueryEx |
sub_40148D(ccd1): KERNEL32.VirtualProtectEx KERNEL32.GetModuleHandleA KERNEL32.GetProcAddress KERNEL32.VirtualAllocEx KERNEL32.WriteProcessMemory KERNEL32.SetThreadContext KERNEL32.ResumeThread KERNEL32.TerminateProcess "ZwUnmapViewOfSection" "ntdll.dll" "WriteProcessMemory failed\n" "Load failed. Consider making this EXE "... |