Static | ZeroBOX

PE Compile Time

2012-08-21 20:17:57

PE Imphash

461dc836626597933929a467ef09b568

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x000178bc 0x00018000 6.6514707206
.data 0x00019000 0x00001610 0x00001000 0.0
.rsrc 0x0001b000 0x00002302 0x00003000 2.21828481368

Resources

Name Offset Size Language Sub-language File type
CUSTOM 0x0001bbcc 0x0000057e LANG_ENGLISH SUBLANG_ENGLISH_US MS Windows icon resource - 1 icon, 16x16, 8 bits/pixel
CUSTOM 0x0001bbcc 0x0000057e LANG_ENGLISH SUBLANG_ENGLISH_US MS Windows icon resource - 1 icon, 16x16, 8 bits/pixel
CUSTOM 0x0001bbcc 0x0000057e LANG_ENGLISH SUBLANG_ENGLISH_US MS Windows icon resource - 1 icon, 16x16, 8 bits/pixel
CUSTOM 0x0001bbcc 0x0000057e LANG_ENGLISH SUBLANG_ENGLISH_US MS Windows icon resource - 1 icon, 16x16, 8 bits/pixel
CUSTOM 0x0001bbcc 0x0000057e LANG_ENGLISH SUBLANG_ENGLISH_US MS Windows icon resource - 1 icon, 16x16, 8 bits/pixel
RT_ICON 0x0001b68c 0x00000128 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x0001b68c 0x00000128 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x0001b68c 0x00000128 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_GROUP_ICON 0x0001b65c 0x00000030 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_VERSION 0x0001b260 0x000003fc LANG_ENGLISH SUBLANG_ENGLISH_US data

Imports

Library MSVBVM60.DLL:
0x401000 __vbaStrI2
0x401004 _CIcos
0x401008 _adj_fptan
0x40100c __vbaVarMove
0x401010 __vbaFreeVar
0x401014 __vbaStrVarMove
0x401018 __vbaFreeVarList
0x40101c _adj_fdiv_m64
0x401020 __vbaFreeObjList
0x401024 None
0x401028 _adj_fprem1
0x40102c __vbaStrCat
0x401030 None
0x401034 __vbaSetSystemError
0x401038 None
0x401040 None
0x401044 _adj_fdiv_m32
0x401048 __vbaAryDestruct
0x40104c None
0x401050 __vbaObjSet
0x401054 None
0x401058 __vbaOnError
0x40105c _adj_fdiv_m16i
0x401060 _adj_fdivr_m16i
0x401064 None
0x401068 None
0x40106c _CIsin
0x401070 None
0x401074 __vbaChkstk
0x401078 EVENT_SINK_AddRef
0x401080 __vbaStrCmp
0x401084 __vbaAryConstruct2
0x401088 None
0x40108c None
0x401090 __vbaI2I4
0x401094 DllFunctionCall
0x401098 __vbaVarLateMemSt
0x40109c _adj_fpatan
0x4010a0 EVENT_SINK_Release
0x4010a4 __vbaUI1I2
0x4010a8 _CIsqrt
0x4010b0 __vbaExceptHandler
0x4010b4 __vbaStrToUnicode
0x4010b8 _adj_fprem
0x4010bc _adj_fdivr_m64
0x4010c0 None
0x4010c4 __vbaFPException
0x4010c8 __vbaStrVarVal
0x4010cc None
0x4010d0 None
0x4010d4 _CIlog
0x4010d8 __vbaErrorOverflow
0x4010dc __vbaNew2
0x4010e0 _adj_fdiv_m32i
0x4010e4 _adj_fdivr_m32i
0x4010e8 __vbaStrCopy
0x4010ec __vbaFreeStrList
0x4010f0 _adj_fdivr_m32
0x4010f4 _adj_fdiv_r
0x4010f8 None
0x4010fc None
0x401100 __vbaStrToAnsi
0x401104 None
0x401108 _CIatan
0x40110c __vbaStrMove
0x401110 __vbaCastObj
0x401114 _allmul
0x401118 _CItan
0x40111c _CIexp
0x401120 __vbaFreeStr
0x401124 __vbaFreeObj

!This program cannot be run in DOS mode.
`.data
MSVBVM60.DLL
Annoncre7
Samboe
lsepro
lsepro
Timer1
KONDEM
VEJDIU
fremtid
miliar
Gensta
Landsrett
BLINDSM
Nonpoint
Dimess7
FABRIKSFR
ISMEJER
homone
Prokla4
kabellng
tubulat
virkeli
Fotomode8
Scenefunk1
Karbipers
DIALOGIS
Felts2
Catch5
Raabend1
Under8
LIFTERABS
Isospor7
hvislel
underwat
forest
bagflik
sampling
Broade2
Uhaand
equalise
dekagram
Bebyrde6
Bonhomous
COPLOTHN
INAPTA
Colocent
Agtpa1
Lrepla5
Konfer
armadil
Twatsopht8
Kageko
Petrarc6
bccccccccccccccccccccccccccccccccccccccccccccccccccccccccccc
f8888888888888888888888888888888888888888888888
7z______________________________________________
T}bttttttttttttttttttttttttttttttttttttttttttttttt
ZDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDD
xTUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUU
"0=XXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXX
YYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYY/
V`my.I
P~ef2`7
T8@&{#
CNe&hF
6")"Rg
'rMwfAa=
<i\pz!
Ta'XIE
H.%)Ue
QhmQZG
7}Z~o*
U(*K+|$
Y qC51
uq"]_X
:tCn]5
?Gq)A
nD"7o_
h+&X6Y
c5ziim
Bj6L.1
9pbq'L
~,m4%#Bo
iGT=[P/
[{FF3_J
U.8W5G
2!O1W
c2b>R+
5eun3!
%h,iBG
Z%;JhQG
c&i,`hCGs
p:)|TCK
&_}!iP
}=oGh#
9s\K-84
~Z92'B
dR!i@9
#!iYGs
l9&md)a
l@Xh@G
J)*-S%
$>6q6\
Cz"l9&e
J\!iHG
7|3?J'
y!iBGk
l&!g&^F
!W!a!m`
P.o{l9
VB5!6&*
Sovjet
Flelses
Annoncre7
Annoncre7
Samboe
irrupt
MINDES
Coupler
UDKIKSPOS
Strensre
Asylans6
Shfalle
HETERO
Listedeb9
Skinkstra8
BURGJSER
RUNDVI
BOTANI
Tverne4
Binomia7
Deadlock
Nymphobom
Apopl3
Skkelrr2
Sonoritet1
Slagteriu
SERIAL
Damneda
virtuous
sampling
C:\Program Files (x86)\Microsoft Visual Studio\VB98\VB6.OLB
Petrarc6
Catch5
KONDEM
Timer1
Scenefunk1
homone
LIFTERABS
Gensta
Agtpa1
Konfer
hvislel
FABRIKSFR
forest
DIALOGIS
Nonpoint
COPLOTHN
fremtid
equalise
Twatsopht8
tubulat
BLINDSM
Bebyrde6
advapi32
RegQueryValueExA
GetKeyValue
GetKeyValue4
REVALORIZES
__vbaObjSet
VBA6.DLL
__vbaI2I4
__vbaStrCmp
__vbaOnError
__vbaVarMove
__vbaUI1I2
__vbaAryDestruct
__vbaCastObj
__vbaGenerateBoundsError
__vbaStrCopy
__vbaAryConstruct2
__vbaErrorOverflow
__vbaStrVarMove
__vbaFreeVarList
__vbaStrVarVal
__vbaFreeVar
__vbaFreeObjList
__vbaStrI2
__vbaVarLateMemSt
__vbaFreeObj
__vbaHresultCheckObj
__vbaNew2
__vbaStrCat
__vbaStrMove
__vbaFreeStr
__vbaFreeStrList
__vbaStrToUnicode
__vbaSetSystemError
__vbaStrToAnsi
user32
GetWindowTextA
GetWindowTextLengthA
kernel32
VirtualProtect
WritePrivateProfileSectionA
WriteConsoleA
KeyRoot
KeyName
SubKeyRef
KeyVal
SWELLINGS
spoilable
jXh$_A
MSVBVM60.DLL
__vbaStrI2
_CIcos
_adj_fptan
__vbaVarMove
__vbaFreeVar
__vbaStrVarMove
__vbaFreeVarList
_adj_fdiv_m64
__vbaFreeObjList
_adj_fprem1
__vbaStrCat
__vbaSetSystemError
__vbaHresultCheckObj
_adj_fdiv_m32
__vbaAryDestruct
__vbaObjSet
__vbaOnError
_adj_fdiv_m16i
_adj_fdivr_m16i
_CIsin
__vbaChkstk
EVENT_SINK_AddRef
__vbaGenerateBoundsError
__vbaStrCmp
__vbaAryConstruct2
__vbaI2I4
DllFunctionCall
__vbaVarLateMemSt
_adj_fpatan
EVENT_SINK_Release
__vbaUI1I2
_CIsqrt
EVENT_SINK_QueryInterface
__vbaExceptHandler
__vbaStrToUnicode
_adj_fprem
_adj_fdivr_m64
__vbaFPException
__vbaStrVarVal
_CIlog
__vbaErrorOverflow
__vbaNew2
_adj_fdiv_m32i
_adj_fdivr_m32i
__vbaStrCopy
__vbaFreeStrList
_adj_fdivr_m32
_adj_fdiv_r
__vbaStrToAnsi
_CIatan
__vbaStrMove
__vbaCastObj
_allmul
_CItan
_CIexp
__vbaFreeStr
__vbaFreeObj
About
Version
Caption
hjfrekvensererne
Vestagers
Ekspeditionsdeltagerens2
Lydsporet6
Lacunal
underpant
Fravalgets
Explemental4
thronging
Kulturaktiviteter3
Barfrost
Dayside
Surmuleriers
fertiliserer
migrationist
forside
Gynthia6
Ovenliggende
CHICHIS
ANAPHRODISIA
Villainousness6
Midtergangen
TILSTAAR
NOSEAN
Blank4
Preinitialize
Parkgstens2
eftersynkroniserendes
combaron
kvgproducents
Kollegiernes2
ARBEJDSLSHEDS
Corolline
Fortryllelsers
erfaringsgrundlagenes
Majuscule4
Alodification2
Dockises3
Octonematous7
LIVSSITUATION
Unseemingly
NEWSIEST
Bemande
OUTBRINGING
Hundemad
Unparenthesised7
UNVOIDNESS
atrophy
Deprocedured2
Tartarises
trvarefabrik
SVMMEHUDEN
BRYLLUPSGAVEN
TILSENDELSERNES
rygelsen
efterkommere
befragtningerne
Baconizes4
scannede
PHANTASTIC
Dankly
Resolidifying
Homoiousian
borsjtjen
Vestigium
Avisartikler
definitte
SCATOLOGIC
skurebrsternes
Kornenes5
Whutter
RECONNOITRER
klokkeslttenes
centermodellen
frstedel
Bjlenaalen
Thioureas4
Ekspressens9
Rotundly7
goaled
ridiculizes
FORECHASE
Sulphourea
MATRIARCHAL
egetrer
Bagflikke
Pediculina
FLERBRUGERLSNINGERS
feracities
slvbederne
auktioneres
premonstrant
Amethodical
BANANALAND
CHAPACURA
isospins
Tysklandsrejses
SORTERINGSFORMER
Systole7
lamentations
SWAGBELLY
Kniberier8
Ivrkstters
scobiform
Skiltendes
vallens
BRODERGARNERNE
DEBUGGED
Unguard
PRSTERER
Gnistr
Madrassens
Gennembank1
novice
udbyttetest
DORSIFLEXION
ugrlig
Nonfacility1
Semiflexed
Customiser
dejeuner
Preconsecration
bawdiness
Poppyfish7
TEGNESTIFTERNES
Vekselererfirmas
Nyhedsquiz4
Towels
STRAIGHTWAY
Medlemspris2
TRILARCENOUS
Foresprgernes
Fiskemelets
Groundlessly
DDBIDEREN
ORDOSITE
Underwarden1
Civilianised
hjvandstand
Thyrsus8
COEXCLUSIVE
SYMPATISTREJKER
Oligorhizous2
Manhunter7
commixt
Gammed
SLANGEBID
Inhabilitetssynspunktet4
MIRAKELDOKTORS
subbureaus
onaneredes
paakldte
Importers9
udbredelsen
STRAALINGSFARES
Reticent
Ispinds3
REINHARD
FROUNCE
Totemy5
ISOGRAPHIC
LIVREDDERES
FLANKEANGREBENES
Termograferende4
Kommentarlinien5
Reaktionstiders6
Underskuddets8
UNMETTLE
ROSEANNA
skriftsnittenes
velseshold
MANIER
hjremarginerne
Internobasal
millennial
KLENDES
sammensvrgelsernes
DONNAERNE
Dksels
campman
Beredent
OVERDEL
OXYGONAL
Tilbagefaldene8
NITROGENISE
Ethephon7
paraforms
Grith9
HORSEBACKS
PRELIQUIDATE
PIRATUDGAVERS
musketlike
CHARLATANERS
Ghostliness
STARTKOMMANDOER
Storebededags6
Sulfurets4
juloid
UOPLAGTHED
crates
Storiological
Brisernes
LAICHS
hypernormally
Brnesaarenes
teernes
SKILDPADDESKALLER
Motordrevnes9
speckiest
chillumchee
Mastoparietal
Slaglessness9
Advokaturernes3
forskelsbehandledes
smertet
knallertkrere
Champaca
volontrers
batidaceae
Cursiveness
Kanter7
Sprogtones5
Blegnbede
Arizona
Skulkes3
bogkafeen
Volitiency
MAKSIMERET
grassplat
sintringer
Ampullosity
Turpitude9
Biograferende1
Haarby5
Formolit
Sundhedspolitik6
abnormt
Flavourers2
kontorer
Bovlamme2
bundafstands
heritor
Demoralisering3
bombetrussel
Blueball
fornylig
NONTELEOLOGICALLY
Amphictyonic
Tresidet
Welldone8
OUBLIETTE
SHAVERENS
Fangot
mohikaneren
Transponible
CUSTOM
VS_VERSION_INFO
VarFileInfo
Translation
StringFileInfo
040904B0
Comments
Video Converter Professional
CompanyName
Video Converter Professional
FileDescription
Any Video Converter Professional
LegalCopyright
Any Video Converter Professional
LegalTrademarks
Any Video Converter Professional
ProductName
Any Video Converter Professional
FileVersion
ProductVersion
InternalName
Sovjet
OriginalFilename
Sovjet.exe
Antivirus Signature
Bkav W32.AIDetect.malware2
Lionic Trojan.Win32.Mucc.4!c
Elastic malicious (high confidence)
MicroWorld-eScan Trojan.GenericKD.47113369
FireEye Generic.mg.48fdc5b6bdb43e97
CAT-QuickHeal Clean
ALYac Clean
Cylance Unsafe
VIPRE Clean
Sangfor Trojan.Win32.Save.a
K7AntiVirus Riskware ( 0040eff71 )
BitDefender Trojan.GenericKD.47113369
K7GW Riskware ( 0040eff71 )
CrowdStrike win/malicious_confidence_100% (W)
Arcabit Trojan.Generic.D2CEE499
BitDefenderTheta Clean
Cyren Clean
Symantec ML.Attribute.HighConfidence
ESET-NOD32 a variant of Win32/Injector.EQFP
APEX Malicious
Paloalto generic.ml
ClamAV Clean
Kaspersky Trojan.Win32.Mucc.ssq
Alibaba Trojan:Win32/Injector.d18c8e43
NANO-Antivirus Clean
ViRobot Clean
Rising Clean
Ad-Aware Trojan.GenericKD.47113369
Emsisoft Trojan.GenericKD.47113369 (B)
Comodo Clean
F-Secure Clean
Baidu Clean
Zillya Clean
TrendMicro Clean
McAfee-GW-Edition BehavesLike.Win32.Fareit.ch
CMC Clean
Sophos Mal/Generic-S
SentinelOne Static AI - Suspicious PE
Jiangmin Clean
Webroot Clean
Avira Clean
MAX malware (ai score=85)
Antiy-AVL Clean
Kingsoft Clean
Gridinsoft Clean
Microsoft Trojan:Win32/Sabsik.FL.B!ml
SUPERAntiSpyware Clean
ZoneAlarm Clean
GData Trojan.GenericKD.47113369
Cynet Malicious (score: 100)
AhnLab-V3 Trojan/Win.VBKrypt.R444067
Acronis Clean
McAfee RDN/Generic.hbg
TACHYON Clean
VBA32 Clean
Malwarebytes Trojan.GuLoader
Panda Trj/RnkBend.A
Zoner Clean
TrendMicro-HouseCall TROJ_FRS.VSNW05J21
Tencent Win32.Trojan.Mucc.Pgnl
Yandex Clean
Ikarus Clean
MaxSecure Clean
Fortinet W32/Agent.FCS!tr
AVG Win32:Trojan-gen
Cybereason Clean
Avast Win32:Trojan-gen
No IRMA results available.