Static | ZeroBOX

PE Compile Time

2007-10-16 02:11:01

PE Imphash

f00e92ab26ebbca78896863837da549f

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.data 0x00001000 0x00000890 0x00000a00 5.52505749748
.rdata 0x00002000 0x00000552 0x00000600 4.42254023631
.idata 0x00003000 0x000004c4 0x00000200 0.101910425663
.rsrc 0x00004000 0x000066f4 0x00006800 4.51004510826
.reloc 0x0000b000 0x000001ac 0x00000200 4.36784937981
.refox 0x0000c000 0x0000d400 0x0000d400 7.99030167634

Resources

Name Offset Size Language Sub-language File type
TYPELIB 0x00004248 0x000020b8 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_ICON 0x00007c20 0x000025a8 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_ICON 0x00007c20 0x000025a8 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_ICON 0x00007c20 0x000025a8 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_ICON 0x00007c20 0x000025a8 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_ICON 0x00007c20 0x000025a8 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_STRING 0x0000a1c8 0x0000018c LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_GROUP_ICON 0x0000a354 0x0000004c LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_MANIFEST 0x0000a3a0 0x00000354 LANG_ENGLISH SUBLANG_ENGLISH_US XML 1.0 document, ASCII text, with CRLF line terminators

Imports

Library MSVCR71.dll:
0xcff2048 _onexit
0xcff204c __dllonexit
0xcff2050 _except_handler3
0xcff2054 __CppXcptFilter
0xcff2058 _adjust_fdiv
0xcff205c malloc
0xcff2060 _initterm
0xcff2064 free
0xcff2068 _mbsrchr
0xcff206c _access
0xcff2070 isspace
Library KERNEL32.dll:
0xcff2010 GetModuleFileNameA
0xcff2014 LoadLibraryA
0xcff2018 GetProcAddress
0xcff201c GetSystemDirectoryA
0xcff2020 lstrcatA
0xcff2024 GetCurrentDirectoryA
0xcff2028 lstrcpyA
0xcff202c LeaveCriticalSection
0xcff2030 FreeLibrary
0xcff2034 EnterCriticalSection
0xcff2038 DeleteCriticalSection
Library USER32.dll:
0xcff2078 LoadStringA
Library ADVAPI32.dll:
0xcff2000 RegCloseKey
0xcff2004 RegOpenKeyA
0xcff2008 RegQueryValueA
Library ole32.dll:
0xcff2080 CoFreeUnusedLibraries

Exports

Ordinal Address Name
1 0xcff110d DllCanUnloadNow
2 0xcff1526 DllGetClassObject
3 0xcff1574 DllRegisterServer
4 0xcff159f DllUnregisterServer
!This program cannot be run in DOS mode.
.rdata
@.idata
@.reloc
B.refox
u'VPh@1
\Shell\Open\Command
VisualFoxProRuntimeMT.9
DllOleInit
VFPDllCanUnloadNow
VFPDllGetClassObject
isspace
_access
_mbsrchr
MSVCR71.dll
_initterm
malloc
_adjust_fdiv
__CppXcptFilter
_except_handler3
__dllonexit
_onexit
LeaveCriticalSection
FreeLibrary
EnterCriticalSection
DeleteCriticalSection
InitializeCriticalSection
DisableThreadLibraryCalls
lstrcpyA
GetCurrentDirectoryA
lstrcatA
GetSystemDirectoryA
GetProcAddress
LoadLibraryA
GetModuleFileNameA
KERNEL32.dll
LoadStringA
USER32.dll
RegCloseKey
RegQueryValueA
RegOpenKeyA
ADVAPI32.dll
CoFreeUnusedLibraries
ole32.dll
foxwt.dll
DllCanUnloadNow
DllGetClassObject
DllRegisterServer
DllUnregisterServer
stdole2.tlbWWW
_mlgirisW
Imljewel
ClassLibrary
DataSessionW
VERSIYON
ANAROOTW
SIRKETWW
hUKULKODWW
KULLANICIWWW
MLINIWWW
KULSIFWW
?^STOTEXTW
\[Init
InitParm1WWW
InitParm2WWW
;RetValWW
SIFREKONTWWW
SIFREONAYWWW
1GETSTOCARWWW
DestroyW
ErrorWWW
aBnErrorWW
`.cMethodW
)nLineWWW
;ReadExpressionWW
cPropertyNameWWW
/ReadMethodWW
aResetToDefaultWW
$)cPropertyWWW
.iSaveAsClassW
cClassLibNameWWW
cClassNameWW
cDescription
WriteExpressionW
cExpressionW
<WriteMethodW
LcMethodNameW
cMethodTextW
lCreateMethodWWW
nVisibilityW
AddPropertyW
8vNewValueWWW
]BaseClassWWW
ClassWWW
oParentClassW
ParentWW
HsCommentW
HeightWW
hNWidthWWW
AddObjectWWW
jEcNameWWW
(cClassWW
zcOLEClassWWW
aInit1WW
xJNewObjectWWW
cModuleW
cInApplicationWW
RemoveObject
cObjectNameW
*PictureW
u"HelpContextIDWWW
jWhatsThisHelpIDW
ShowWhatsThisWWW
KControls
ControlCount
LObjectsWd
MLJEWELW
mlgiris Type LibraryWW
dllgiris.MLJEWELWW[
Specifies the file name of the user-defined class library that contains the object's class.WWW
Specifies whether the object runs in the current data session or in its own private data session with a separate data environment.!
Occurs when an object is created.W"
Occurs when an object is released.2
Occurs when there is a run-time error in a method.K
Contains the expression entered for a property value in the property sheet.WWW)
Returns the text of the specified method.W2
Resets the property/method to the inherited value.H
Saves an instance of an object as a class definition in a class library.WW#
Writes an expression to a property.WWW2
Writes the specified text to the specified method.!
Adds a new property to an object.W[
Specifies the name of the Visual FoxPro base class on which the referenced object is based.WWW9
Returns the name of the class that an object is based on.WB
Returns the name of the parent class on which the object is based.-
References the container object of a control.W#
Stores information about an object.WWW7
Specifies the name used to reference an object in code.WWW.
Stores any extra data needed for your program.0
Specifies the height of an object on the screen.WW!
Specifies the width of an object.W1
Adds an object to a container object at run time.W?
Removes a specified object from a Container object at run time.WWW?
Specifies the graphics file or field to display on the control.WWWT
Specifies a context ID for a topic in a Help file to provide context-sensitive Help.WWL
Specifies a Help topic context ID to provide What's This help for an object.WWR
Displays the Help topic specified for an object with the WhatsThisHelpID property.:
An array for accessing the controls in a container object.7
Specifies the number of controls in a container object.WWW9
An array for accessing the objects in a container object.W
9999990
999999990
9999999999
9999999999
<?xml version="1.0" encoding="UTF-8" standalone="yes"?>
<assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0">
<assemblyIdentity
version="1.0.0.0"
type="win32"
name="Microsoft.VisualFoxPro"
processorArchitecture="x86"
<description>Visual FoxPro</description>
<trustInfo xmlns="urn:schemas-microsoft-com:asm.v3">
<security>
<requestedPrivileges>
<requestedExecutionLevel level="asInvoker" />
</requestedPrivileges>
</security>
</trustInfo>
<dependency>
<dependentAssembly>
<assemblyIdentity
type="win32"
name="Microsoft.Windows.Common-Controls"
version="6.0.0.0"
language="*"
processorArchitecture="x86"
publicKeyToken="6595b64144ccf1df"
/>
</dependentAssembly>
</dependency>
</assembly>
PADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPAD
>0I0O0X0g0o0v0~0
1 1'1-161<1M1U1
2%2:2X2j2q2
3)3/3<3O3[3t3
4 4.4>4G4V4b4h4y4
5)505B5H5`5i5w5
66+606;6G6S6`6f6m6v6|6
6/7n7t7}7
~&p02<
SWV\}s
M<QyDP
c9d{r7s[
[{r7#)
/BpLi@
%K\IQY
OaJ4B=m%
9mgfJ}
fxw-9C
o7uUH:
1?ijTtO
Crch _B
gg&FUuenS2
{,/1PT
3XUzfi
rbJta_
5;|^m:
ICf4T6
+#YQ8
o'fl(`
Lhl^?a
fs<~^eQ
r"iw_@
GT\g1G5
g~"4Ip
Vd|WS~
0/$IA84
?*#xJu
G61?<W
/[11P^
O(G#7k
DU9<!vE#
mOaNME
MFYu1Te+g
cWK1nN
cl#B]*
<2U$:i
gm*uWW
~*Jz6$=-
Y)XIJ[u
;6.E,A
yX707z
B1F8t!
ep*7F\
d@()d%
=cU[0E
c9l{@O!
/o}+rTu
}q^&k'
;~ti:s
tXsA3a0
b>8tH0
4E`bm o
4@ Wu.iI
?_&Zd<
C5;@mL
[v`re,Jy
=k\,ZI
:}qK+K
9:)HBN
Y7w(&jP
+}l.m}Q
H|D8o)r
xvl@~$
GD0fmd
}WS0Q,
Xs'[LhG&
)pdZj0
{(4]w1
S6h&a)
EfaZC4Z
SIv}`\e
G;`:;6
mg0+&vx
rc.*P;]&
/1Dl*v
@7zV7A)
jkA5F;
43fmpd
g'3Rj]
qZ9N<X
"b^[;a
5;{WB{7
6k:$8a
2fU"sZ*
=q:&=c
Y9\O,d.
Mt<?I&
2uGmqr'
[~0b~]lY
,<;(I}
4mJ8e4
)J%/l (#r
!0MP\=
jKYpO&
cOUt[s
%c0H+Y
@r8?P
1!t}<s
v|<loR
rowW[)
Ozo;V!
[mA]`%5P
vEi7k4
su~6@I
C/OLlv
mk@"34
4 1 4 103 7MLJEWEL 30c:\mljewel.12\dll\dllgiris.prg 16dllgiris.MLJEWEL 12 16dllgiris.MLJEWEL 38{B1F3D492-6A77-473E-9E98-8F271D289D74} 38{BCAC9435-3058-4DB3-A5D0-F7DE33BEAB80} 0 38{1ED18520-B989-4DD0-95E4-14D43E95BDF9} 20mlgiris Type Library 31.0
{hlCtr
TYPELIB
VFP9.EXE
VFP9R.DLL
VFP9T.DLL
Microsoft Visual FoxPro:Cannot locate the Microsoft Visual FoxPro support library."The %s file is invalid or damaged.)Cannot run the file %s.
Error code 0xlX.
Antivirus Signature
Bkav W32.AIDetectMalware
Lionic Clean
Elastic Clean
ClamAV Clean
CMC Clean
CAT-QuickHeal Clean
Skyhigh BehavesLike.Win32.Backdoor.mc
ALYac Clean
Cylance Unsafe
Zillya Clean
Sangfor Clean
CrowdStrike Clean
Alibaba Clean
K7GW Clean
K7AntiVirus Clean
huorong Clean
Baidu Clean
VirIT Clean
Paloalto Clean
Symantec Clean
tehtris Clean
ESET-NOD32 Clean
APEX Malicious
Avast Clean
Cynet Malicious (score: 100)
Kaspersky Clean
BitDefender Clean
NANO-Antivirus Clean
ViRobot Clean
MicroWorld-eScan Clean
Tencent Clean
Sophos Clean
F-Secure Clean
DrWeb Clean
VIPRE Clean
TrendMicro Possible_Virus
McAfeeD Clean
Trapmine Clean
CTX Clean
Emsisoft Clean
Ikarus Clean
FireEye Clean
Jiangmin Clean
Webroot Clean
Varist Clean
Avira Clean
Fortinet Clean
Antiy-AVL Clean
Kingsoft malware.kb.a.999
Gridinsoft Clean
Xcitium Clean
Arcabit Clean
SUPERAntiSpyware Clean
ZoneAlarm Clean
Microsoft Clean
Google Clean
AhnLab-V3 Clean
Acronis Clean
McAfee Clean
TACHYON Clean
VBA32 Clean
Malwarebytes Clean
Panda Clean
Zoner Clean
TrendMicro-HouseCall Clean
Rising Clean
Yandex Clean
SentinelOne Clean
MaxSecure Clean
GData Clean
AVG Clean
DeepInstinct Clean
alibabacloud Clean
No IRMA results available.