Static | ZeroBOX

PE Compile Time

2021-05-25 10:53:24

PE Imphash

16fdcfe1a438f1c855947e8a1cbc62d0

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x0002c030 0x0002d000 4.689822693
.data 0x0002e000 0x00001490 0x00001000 0.0
.rsrc 0x00030000 0x00006db6 0x00007000 4.01311118276

Resources

Name Offset Size Language Sub-language File type
RT_ICON 0x000305f6 0x000025a8 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_ICON 0x000305f6 0x000025a8 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_ICON 0x000305f6 0x000025a8 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_ICON 0x000305f6 0x000025a8 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_ICON 0x000305f6 0x000025a8 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_ICON 0x000305f6 0x000025a8 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_ICON 0x000305f6 0x000025a8 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_ICON 0x000305f6 0x000025a8 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_ICON 0x00030580 0x00000076 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_VERSION 0x00030240 0x00000340 LANG_TAMIL SUBLANG_DEFAULT data

Imports

Library MSVBVM60.DLL:
0x401000 _CIcos
0x401004 _adj_fptan
0x401008 __vbaVarMove
0x40100c None
0x401010 __vbaFreeVar
0x401014 __vbaAryMove
0x401018 __vbaStrVarMove
0x40101c __vbaFreeVarList
0x401020 __vbaEnd
0x401024 None
0x401028 _adj_fdiv_m64
0x40102c __vbaFreeObjList
0x401030 None
0x401034 _adj_fprem1
0x401038 __vbaRecAnsiToUni
0x40103c None
0x401040 __vbaSetSystemError
0x401044 __vbaRecDestruct
0x40104c __vbaLenVar
0x401050 _adj_fdiv_m32
0x401054 None
0x401058 __vbaAryDestruct
0x40105c __vbaVarForInit
0x401060 None
0x401064 __vbaObjSet
0x401068 None
0x40106c None
0x401070 _adj_fdiv_m16i
0x401074 __vbaObjSetAddref
0x401078 _adj_fdivr_m16i
0x40107c __vbaVarTstLt
0x401080 __vbaFpR8
0x401084 _CIsin
0x401088 None
0x40108c __vbaChkstk
0x401090 EVENT_SINK_AddRef
0x401098 __vbaStrCmp
0x40109c __vbaAryConstruct2
0x4010a0 __vbaVarTstEq
0x4010a4 __vbaObjVar
0x4010a8 DllFunctionCall
0x4010ac None
0x4010b0 None
0x4010b4 None
0x4010b8 _adj_fpatan
0x4010bc None
0x4010c0 None
0x4010c4 __vbaLateIdCallLd
0x4010c8 None
0x4010cc None
0x4010d0 __vbaRecUniToAnsi
0x4010d4 EVENT_SINK_Release
0x4010d8 None
0x4010dc __vbaUI1I2
0x4010e0 _CIsqrt
0x4010e8 None
0x4010ec __vbaExceptHandler
0x4010f0 _adj_fprem
0x4010f4 _adj_fdivr_m64
0x4010f8 __vbaI2Str
0x4010fc None
0x401100 None
0x401104 __vbaFPException
0x401108 None
0x40110c __vbaStrVarVal
0x401110 None
0x401114 _CIlog
0x401118 __vbaFileOpen
0x40111c __vbaNew2
0x401120 __vbaVar2Vec
0x401124 None
0x401128 _adj_fdiv_m32i
0x40112c _adj_fdivr_m32i
0x401130 __vbaStrCopy
0x401134 None
0x401138 __vbaI4Str
0x40113c __vbaFreeStrList
0x401140 _adj_fdivr_m32
0x401144 _adj_fdiv_r
0x401148 None
0x40114c None
0x401150 __vbaVarTstNe
0x401154 __vbaI4Var
0x401158 None
0x40115c __vbaVarAdd
0x401160 __vbaLateMemCall
0x401164 __vbaInStrB
0x401168 None
0x40116c __vbaStrToAnsi
0x401170 __vbaVarDup
0x401174 __vbaFpI4
0x401178 __vbaVarCopy
0x40117c __vbaLateMemCallLd
0x401184 _CIatan
0x401188 __vbaStrMove
0x40118c __vbaCastObj
0x401190 None
0x401194 _allmul
0x401198 __vbaLateIdSt
0x40119c _CItan
0x4011a0 None
0x4011a4 __vbaVarForNext
0x4011a8 _CIexp
0x4011ac __vbaFreeStr
0x4011b0 __vbaFreeObj

!This program cannot be run in DOS mode.
`.data
MSVBVM60.DLL
As InRimless
sluttider
Projektilerne1
ET_SYbA0f+j
/6mh\@
Ucouzb
vvvvvv
vvvvvv
c:']]]]
Projektilerne1
Command2
Pudsenes
Command1
Heppen2
Grandisonianism
MESTERSTYKKE
Frame1
Bestormelserne1
Frame5
SKILDRERNE
VB5!6&*
composersatss
RADIOBROADCASTERS
Rimless
Rimless
sluttider
Blamagerne9
C:\Program Files (x86)\Microsoft Visual Studio\VB98\VB6.OLB
Frame5
Frame1
Command1
Command2
user32
EnumDisplaySettingsA
wininet.dll
FtpCreateDirectoryA
kernel32
lstrcmpA
DestroyMenu
netapi32
NetUserGetInfo
UnregisterHotKey
SetBitmapBits
GetVersion
advapi32.dll
CryptReleaseContext
shell32.dll
DuplicateIcon
CreateBrushIndirect
DdeConnect
IsWindowEnabled
CryptDecrypt
Escape
advapi32
GetTokenInformation
shlwapi.dll
PathIsDirectoryA
GetCursor
CreateFileA
SetROP2
GetEnvironmentVariableA
SendMessageA
RegRestoreKeyA
DdeInitializeA
GetComputerNameA
VirtualLock
GetActiveWindow
AddFontResourceA
CreateDIBPatternBrushPt
LoadCursorA
TrackPopupMenu
CreateEllipticRgn
GetCurrentConsoleFont
EnumChildWindows
wininet
InternetOpenUrlA
GetVolumeInformationA
userenv.dll
GetDefaultUserProfileDirectoryA
SetLayeredWindowAttributes
PathAddExtensionA
LoadImageA
SetKeyboardState
GetPrivateProfileSectionA
SetSystemPowerState
winmm.dll
midiOutShortMsg
wsock32.dll
FindFirstFileA
PlaySoundA
ReadConsoleA
GetFileSizeEx
RegisterClass
SetWindowPlacement
AllocateAndInitializeSid
SetFileSecurityA
GetParent
LoadLibraryExA
mixerGetDevCapsA
IsTextUnicode
PathCanonicalizeA
Absurde
CreateRoundRectRgn
FlashWindow
IPHlpApi
GetIpAddrTable
Contused8
Anastomose4
SAMMENSTUV
BRDREFOLKET
Fagsals7
thorlejv
Bestraalingen
Dmningsskredets
Usikkerhedsmomenters
Fragaaende
METERGRAM
VBA6.DLL
__vbaVarForNext
__vbaStrVarVal
__vbaLenVar
__vbaVarForInit
__vbaVarTstEq
__vbaVarCopy
__vbaGenerateBoundsError
__vbaAryConstruct2
__vbaInStrB
__vbaI2Str
__vbaFpR8
__vbaI4Str
__vbaStrCmp
__vbaRecDestruct
__vbaAryDestruct
__vbaFileOpen
__vbaRecDestructAnsi
__vbaLateIdSt
__vbaLateMemCall
__vbaRecAnsiToUni
__vbaRecUniToAnsi
__vbaCastObj
__vbaUI1I2
__vbaLateMemCallLd
__vbaFpI4
__vbaVar2Vec
__vbaAryMove
__vbaEnd
__vbaVarDup
__vbaObjVar
__vbaStrCopy
__vbaObjSetAddref
__vbaVarTstNe
__vbaStrToAnsi
__vbaSetSystemError
__vbaFreeVarList
__vbaVarTstLt
__vbaVarAdd
__vbaVarMove
__vbaFreeObj
__vbaFreeStrList
__vbaStrVarMove
__vbaFreeVar
__vbaFreeObjList
__vbaFreeStr
__vbaI4Var
__vbaStrMove
__vbaHresultCheckObj
__vbaNew2
__vbaObjSet
__vbaLateIdCallLd
zNaperies8
Blamagerne9
Komfurers2
Komfurers2
Naperi
M-4\}m
&SsF"(
K}c<:"";
TS*P5\
#0n:"#
;mzh@W
^Hi5i[P
)^^#!^\
4:")^\
:@cI|}
/R=\.F
aq`#8Re
;mzRiR
j>k;x(x
YTS*P5\
Ac4<}WZ
YD*(Ra
}c(F"+R
:"8u
9Sc0y+
4\Sct<Ri
aScl|Sct|S
Rc~TSi
Yc0ORi
kTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTT
'''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''
C}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}
zsbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbb
+((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((
;hhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhh
YYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYY
<s0NNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNN
}RRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRR
N+++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
$<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<
5&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&
Cvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvv
eeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeee
aPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPP
?aaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaa
&8888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888
c--------------------------------------------------------------------------------------------------
AKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKK
@////////////////////////////////////////////////////////////////////////////////////////////////
/999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999
semiportable
OPFARENHED
Needlelike
BEBLAIN
SMLEHOVED
Perityphlitis
murermesterens
TELETEKSTENS
Comedo
Rammedel7
oplagte
luftformige
Mangedobles
REIMBURSEABLE
variationsbreddernes
TOERNE
Thearchy
ANKERSPIL
tonganerens
Araliad1
Brilleret
anraabs
Unbailable
THINKINGS
Urtepotterne
Psychotria
nonaristocratical
Bioherms9
SPECTROPHOTOMETRES
Redoubled
finessers
Iridiophore
SAMLINGSPUNKTER
Pests7
Taklegarnets6
Cubbish6
udkigsmnd
nonexhortatory
leprosed
Amanuensiserne
radiomodtagningerne
Kramningernes4
Aortae7
Tidoblingen7
parrets
LASAGNES
Indfaldsvinkelens
YOLKLESS
Ungdomsbilleder1
flottenhejmers
Illites6
EPENCEPHALIC
varication
Seesaws6
UNLEGISLATIVE
IRREDENTISTS
MSVBVM60.DLL
_CIcos
_adj_fptan
__vbaVarMove
__vbaFreeVar
__vbaAryMove
__vbaStrVarMove
__vbaFreeVarList
__vbaEnd
_adj_fdiv_m64
__vbaFreeObjList
_adj_fprem1
__vbaRecAnsiToUni
__vbaSetSystemError
__vbaRecDestruct
__vbaHresultCheckObj
__vbaLenVar
_adj_fdiv_m32
__vbaAryDestruct
__vbaVarForInit
__vbaObjSet
_adj_fdiv_m16i
__vbaObjSetAddref
_adj_fdivr_m16i
__vbaVarTstLt
__vbaFpR8
_CIsin
__vbaChkstk
EVENT_SINK_AddRef
__vbaGenerateBoundsError
__vbaStrCmp
__vbaAryConstruct2
__vbaVarTstEq
__vbaObjVar
DllFunctionCall
_adj_fpatan
__vbaLateIdCallLd
__vbaRecUniToAnsi
EVENT_SINK_Release
__vbaUI1I2
_CIsqrt
EVENT_SINK_QueryInterface
__vbaExceptHandler
_adj_fprem
_adj_fdivr_m64
__vbaI2Str
__vbaFPException
__vbaStrVarVal
_CIlog
__vbaFileOpen
__vbaNew2
__vbaVar2Vec
_adj_fdiv_m32i
_adj_fdivr_m32i
__vbaStrCopy
__vbaI4Str
__vbaFreeStrList
_adj_fdivr_m32
_adj_fdiv_r
__vbaVarTstNe
__vbaI4Var
__vbaVarAdd
__vbaLateMemCall
__vbaInStrB
__vbaStrToAnsi
__vbaVarDup
__vbaFpI4
__vbaVarCopy
__vbaLateMemCallLd
__vbaRecDestructAnsi
_CIatan
__vbaStrMove
__vbaCastObj
_allmul
__vbaLateIdSt
_CItan
__vbaVarForNext
_CIexp
__vbaFreeStr
__vbaFreeObj
vvvvvv
vvvvvv
c:']]]]
Ucouzb
ET_SYbA0f+j
/6mh\@
Arbejdsmetodernesdanskhed8
sagsregistersa
Trstereslebensraumt6
QUENCHESREJOICEMENTPOL
investeringsforeninge
Etymologisessubventrico4
Seeressesmonocondy
FORKRLIGHEDERNESGISKERYGR
DDGODTOPDAGEUNWA
VEXEDINITIATIVER
transduktorensunderholdning
Jordemdreskislenshundredl1
registrerapparaterfabriks
Uncivilizedsbaggaardsadju3
Worldbeatersg
PROBABILISM
fagforbundet
LEGPULL
ANIMATORS
Lsladte2
OUTHYPERBOLIZING
savouriest
Suggererendes
TANGENTIELLES
Skndegsternes
PROFLIGATELY
CONAMARIN
BICAMERAL
Bedoctor
servicebureaus
Fragilit6
Stamhuset2
FUSSING
Unparroted
PIERCEL
bestnkede
Serpenticidal5
Fingervelse9
Slvdyr
Klausulerer
skarntyden
Fuchsinophilous
Applikationsprogrammer2
va0WYRVq1s8ZYNJDYh219
Tressiest6
raserianfaldene
Kajakroerne
preadvertised
rElIRGC0WMv21h3uDSeitNs13
unanticipatedly
wSVW50ngghoXdw104
Nestling8
floccose
Backerne9
Surah5
idealisers
lhWNbT4Mkl8sUWDmcmL0quffNgwUJY440
Vestude1
Codesigning5
Brydsomst
bVzJZc1U67D7AEqS9DD1DGg8AdNh8RhVcUx8RhH125
communicatively
anthropomorphist
weekendudflugter
VS_VERSION_INFO
VarFileInfo
Translation
StringFileInfo
044904B0
Comments
Carpinator
CompanyName
Carpinator Filler
FileDescription
Carpinator Filler
LegalCopyright
Carpinator
LegalTrademarks
Carpinator
ProductName
Carpinator Filler
FileVersion
ProductVersion
InternalName
composersatss
OriginalFilename
composersatss.exe
Antivirus Signature
Bkav W32.AIDetect.malware2
Elastic malicious (high confidence)
MicroWorld-eScan Trojan.GenericKD.46358026
CMC Clean
CAT-QuickHeal Clean
Qihoo-360 Clean
ALYac Clean
Cylance Unsafe
Zillya Clean
AegisLab Trojan.Win32.Mucc.4!c
Sangfor Clean
CrowdStrike Clean
BitDefender Trojan.GenericKD.46358026
K7GW Trojan ( 0057cfc71 )
K7AntiVirus Clean
Baidu Clean
Cyren Clean
Symantec ML.Attribute.HighConfidence
ESET-NOD32 a variant of Win32/Kryptik.HLAH
APEX Malicious
Paloalto generic.ml
ClamAV Clean
Kaspersky UDS:DangerousObject.Multi.Generic
Alibaba Clean
NANO-Antivirus Clean
ViRobot Clean
Rising Trojan.Sonbokli!8.10198 (CLOUD)
Ad-Aware Trojan.GenericKD.46358026
Sophos Clean
Comodo Clean
F-Secure Clean
DrWeb Clean
VIPRE Clean
TrendMicro Trojan.Win32.GULOADER.UVFTGB
McAfee-GW-Edition BehavesLike.Win32.Trojan.dt
FireEye Generic.mg.9fda9bae06e1705b
Emsisoft Trojan.GenericKD.46358026 (B)
SentinelOne Static AI - Malicious PE
Jiangmin Clean
Webroot Clean
Avira Clean
MAX malware (ai score=88)
Antiy-AVL Clean
Kingsoft Win32.Troj.Generic_a.a.(kcloud)
Microsoft Trojan:Win32/Wacatac.B!ml
Gridinsoft Clean
Arcabit Clean
SUPERAntiSpyware Clean
ZoneAlarm UDS:DangerousObject.Multi.Generic
GData Trojan.GenericKD.46358026
Cynet Malicious (score: 100)
AhnLab-V3 Malware/Win.AGEN.R422464
Acronis Clean
McAfee Artemis!9FDA9BAE06E1
TACHYON Clean
VBA32 Clean
Malwarebytes Clean
Panda Trj/RnkBend.A
Zoner Clean
TrendMicro-HouseCall Trojan.Win32.GULOADER.UVFTGB
Tencent Clean
Yandex Clean
Ikarus Clean
eGambit Unsafe.AI_Score_95%
Fortinet W32/Kryptik.HLAH!tr
BitDefenderTheta Gen:NN.ZevbaF.34692.nm0@a8gMhpiG
AVG FileRepMalware
Cybereason Clean
Avast FileRepMalware
MaxSecure Trojan.Malware.300983.susgen
No IRMA results available.