All by md5+date+machine#+pcap+txt file below
filename: c:\duped\01C8E2D9136C84DE_1[1]_exe.PE
filename: c:\duped\01C8E2D9137F97AE_svchost_exe.PE
size....: 40960
md5.....: f09382e2187a804ff34c29eee45313fd
sha1....: cac14b727316791ea82e6415f5ef8d93f6a98e42
sha256..: 7f34f025478629e4cab60e4749072159595f9f2a6330875b1289bf4e408315ca
pe info.: ( base data )
entrypointaddress.: 0x401b88
timedatestamp.....: 0x48136b9e (Sat Apr 26 17:51:26 2008)
machinetype.......: 0x14c (I386)
( 3 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0xa000 0x1000 5.55 c2d8ebceeb3f9c37b02d8734ec7f9e8a
.data 0xb000 0x9000 0x8200 7.65 7a83a140c32e045de98adec6323342a4
.idata 0x14000 0x1000 0xa00 4.36 f50154f0a26828455738ac8cdfe004fe
( 4 imports )
> KERNEL32.dll: EnumDateFormatsExA, DeviceIoControl, ReplaceFileA, SetComputerNameA, GetLastError, GetEnvironmentVariableA, VirtualProtect, SetConsoleOS2OemFormat, TlsSetValue, GetVDMCurrentDirectories, MoveFileWithProgressW, SetProcessAffinityMask, GetProcessAffinityMask
> USER32.dll: SetCursor, GetMonitorInfoW, SetKeyboardState, ChangeDisplaySettingsExW, OemToCharA, VkKeyScanExA, GetInternalWindowPos, DdeSetUserHandle, TileChildWindows, DlgDirListW, DdeReconnect, CharToOemBuffA, WINNLSEnableIME, GetClientRect, VkKeyScanExW, UnpackDDElParam, UserClientDllInitialize, GetCursorFrameInfo
> GDI32.dll: GetTextFaceA, EngComputeGlyphSet, FONTOBJ_pQueryGlyphAttrs, FlattenPath, PolyPatBlt, GetViewportExtEx, SetMiterLimit, EngDeletePalette, STROBJ_vEnumStart, CreateCompatibleDC, GdiGetLocalFont, SelectClipRgn, GetLogColorSpaceW, GetKerningPairsW, GetGlyphOutlineA, WidenPath, GdiGetCharDimensions, GetTextMetricsA, PolyTextOutA, CreateHalftonePalette, GetRasterizerCaps, SetWorldTransform, GetDeviceCaps, GdiIsMetaPrintDC, CreateBitmap, GetBkColor, TranslateCharsetInfo, GetDCPenColor, EnumFontFamiliesW, SetLayoutWidth, SetDIBitsToDevice, OffsetClipRgn, GdiConvertBrush
> COMDLG32.dll: GetSaveFileNameA, FindTextA, PrintDlgW, LoadAlterBitmap, WantArrows, ReplaceTextW, ChooseColorW, ChooseFontW
( 0 exports )