| filename | Motherload Goldium.exe | |
|---|---|---|
| size | 13171413 (0xc8fad5) | |
| md5 | 06055ae5c0fd6d718c94a10e847e6d1b | |
| type | PE32 executable (GUI) Intel 80386, for MS Windows | |
| mimetype | application/x-dosexec | |
| clamav | OK | |
| virustotal | → scan with virustotal.com | |
| histogram | ||
MZ Header
| signature | MZ |
| bytes_in_last_block | 0x90 |
| blocks_in_file | 3 |
| num_relocs | 0 |
| header_paragraphs | 4 |
| min_extra_paragraphs | 0 |
| max_extra_paragraphs | 0xffff |
| ss | 0 |
| sp | 0xb8 |
| checksum | 0 |
| ip | 0 |
| cs | 0 |
| reloc_table_offset | 0x40 |
| overlay_number | 0 |
| reserved0 | 0 |
| oem_id | 0 |
| oem_info | 0 |
| reserved2 | 0 |
| reserved3 | 0 |
| reserved4 | 0 |
| reserved5 | 0 |
| reserved6 | 0 |
| lfanew | 0xe0 |
DOS stub
00000000: 0e 1f ba 0e 00 b4 09 cd 21 b8 01 4c cd 21 54 68 |........!..L.!Th| 00000010: 69 73 20 70 72 6f 67 72 61 6d 20 63 61 6e 6e 6f |is program canno| 00000020: 74 20 62 65 20 72 75 6e 20 69 6e 20 44 4f 53 20 |t be run in DOS | 00000030: 6d 6f 64 65 2e 0d 0d 0a 24 00 00 00 00 00 00 00 |mode....$.......|
PE Header
Packer / Compiler
Sections
Data Directory
| type | va | size | |
|---|---|---|---|
| EXPORT | 0 | 0 | |
| IMPORT | 0xcbc10 | 0xf0 | |
| RESOURCE | 0x1a0000 | 0x13f90 | |
| EXCEPTION | 0 | 0 | |
| SECURITY | 0 | 0 | |
| BASERELOC | 0 | 0 | |
| DEBUG | 0 | 0 | |
| ARCHITECTURE | 0 | 0 | |
| GLOBALPTR | 0 | 0 | |
| TLS | 0 | 0 | |
| LOAD_CONFIG | 0 | 0 | |
| Bound_IAT | 0 | 0 | |
| IAT | 0xc1000 | 0x480 | |
| Delay_IAT | 0 | 0 | |
| CLR_Header | 0 | 0 |
| id | lang | string |
|---|---|---|
| 2 | 1028 | Macromedia Flash Player 7 |
| 3 | 1028 | Macromedia Flash movie (*.swf)|*.swf;*.spl|所有檔案 (*.*)|*.*|| |
| 4 | 1028 | 放映檔 (*.exe)|*.exe|| |
| 2 | 1031 | Macromedia Flash Player 7 |
| 3 | 1031 | Macromedia Flash movie (*.swf)|*.swf;*.spl|Alle Dateien (*.*)|*.*|| |
| 4 | 1031 | Projektor (*.exe)|*.exe|| |
| 2 | 1033 | Macromedia Flash Player 7 |
| 3 | 1033 | Macromedia Flash movie (*.swf)|*.swf;*.spl|All Files (*.*)|*.*|| |
| 4 | 1033 | Projector (*.exe)|*.exe|| |
| 2 | 1036 | Macromedia Flash Player 7 |
| 3 | 1036 | Macromedia Flash movie (*.swf)|*.swf;*.spl|Tous les fichiers (*.*)|*.*|| |
| 4 | 1036 | Projection (*.exe)|*.exe|| |
| 2 | 1040 | Macromedia Flash Player 7 |
| 3 | 1040 | Macromedia Flash movie (*.swf)|*.swf;*.spl|Tutti i file (*.*)|*.*|| |
| 4 | 1040 | Proiettore (*.exe)|*.exe|| |
| 2 | 1041 | Macromedia Flash Player 7 |
| 3 | 1041 | Macromedia Flash movie (*.swf)|*.swf;*.spl|すべてのファイル (*.*)|*.*|| |
| 4 | 1041 | プロジェクタ (*.exe)|*.exe|| |
| 2 | 1042 | Macromedia Flash Player 7 |
| 3 | 1042 | Macromedia Flash movie (*.swf)|*.swf;*.spl|모든 파일(*.*)|*.*|| |
| 4 | 1042 | 프로젝터 (*.exe)|*.exe|| |
| 2 | 2052 | Macromedia Flash Player 7 |
| 3 | 2052 | Macromedia Flash movie (*.swf)|*.swf;*.spl|所有文件 (*.*)|*.*|| |
| 4 | 2052 | 播放器 (*.exe)|*.exe|| |
| 2 | 3082 | Macromedia Flash Player 7 |
| 3 | 3082 | Macromedia Flash movie (*.swf)|*.swf;*.spl|Todos los archivos (*.*)|*.*|| |
| 4 | 3082 | Proyector (*.exe)|*.exe|| |
| 104 | 1028 | 影片中有一個 Script 會讓 Flash Player 的速度變慢,如果繼續執行它,電腦可能會停止回應,你要停止這個腳本嗎? |
| 105 | 1028 | Macromedia Flash Player 7 |
| 104 | 1031 | Macromedia Flash Player 7 wird durch ein Skript in diesem Film verlangsamt. Wenn das Skript weiterhin ausgeführt wird, reagiert der Computer möglicherweise nicht mehr. Möchten Sie die Ausführung des Skripts abbrechen? |
| 105 | 1031 | Macromedia Flash Player 7 |
| 104 | 1033 | A script in this movie is causing Macromedia Flash Player 7 to run slowly. If it continues to run, your computer may become unresponsive. Do you want to abort the script? |
| 105 | 1033 | Macromedia Flash Player 7 |
| 104 | 1036 | Un script de cette animation ralentit l’exécution de Macromedia Flash Player 7. Si l’exécution n’est pas suspendue, il est possible que votre ordinateur ne réagisse plus. Souhaitez-vous abandonner l’exécution du script ? |
| 105 | 1036 | Macromedia Flash Player 7 |
| 104 | 1040 | Uno script del filmato sta rallentando la riproduzione di Macromedia Flash Player 7. Se non viene interrotto potrebbe causare il blocco del computer. Interrompere lo script? |
| 105 | 1040 | Macromedia Flash Player 7 |
| 104 | 1041 | ムービー内のスクリプトが原因で Macromedia Flash Player 7 の実行速度が遅くなっています。このまま継続すると、応答しなくなることがあります。スクリプトの実行を中止しますか? |
| 105 | 1041 | Macromedia Flash Player 7 |
| 104 | 1042 | 이 동영상의 스크립트로 인해 Flash 플레이어의 실행 속도가 느립니다. 계속 실행하면 컴퓨터에서 응답하지 않을 수도 있습니다. 스크립트를 중단하시겠습니까? |
| 105 | 1042 | Macromedia Flash Player 7 |
| 104 | 2052 | 影片中的某个脚本导致 Macromedia Flash Player 7 速度降低。如果继续运行,电脑将有一段时间没有响应。是否要终止此脚本? |
| 105 | 2052 | Macromedia Flash Player 7 |
| 104 | 3082 | Un script de esta película está provocando que el Reproductor de Flash se ejecute lentamente. Si continua ejecutándose, su PC podría no responder. ¿Desea anular el script? |
| 105 | 3082 | Macromedia Flash Player 7 |
| module_name | hint | ord | function_name |
|---|---|---|---|
| WSOCK32.dll | 21 | ||
| WSOCK32.dll | 115 | ||
| WSOCK32.dll | 116 | ||
| WSOCK32.dll | 9 | ||
| WSOCK32.dll | 8 | ||
| WSOCK32.dll | 52 | ||
| WSOCK32.dll | 10 | ||
| ole32.dll | 89 | CoUninitialize | |
| ole32.dll | 27 | CoFreeUnusedLibraries | |
| ole32.dll | 84 | CoTaskMemAlloc | |
| ole32.dll | 85 | CoTaskMemFree | |
| ole32.dll | 49 | CoInitialize | |
| ole32.dll | 15 | CoCreateInstance | |
| OLEAUT32.dll | 6 | ||
| WININET.dll | 136 | InternetOpenA | |
| WININET.dll | 107 | InternetConnectA | |
| WININET.dll | 82 | HttpOpenRequestA | |
| WININET.dll | 86 | HttpSendRequestA | |
| WININET.dll | 144 | InternetReadFile | |
| WININET.dll | 101 | InternetCloseHandle | |
| KERNEL32.dll | 159 | FindClose | |
| KERNEL32.dll | 368 | GetSystemDirectoryA | |
| KERNEL32.dll | 66 | CreateMutexA | |
| KERNEL32.dll | 585 | ReleaseMutex | |
| KERNEL32.dll | 734 | UnmapViewOfFile | |
| KERNEL32.dll | 501 | MapViewOfFile | |
| KERNEL32.dll | 56 | CreateFileMappingA | |
| KERNEL32.dll | 390 | GetTickCount | |
| KERNEL32.dll | 765 | WaitForSingleObject | |
| KERNEL32.dll | 769 | WideCharToMultiByte | |
| KERNEL32.dll | 312 | GetModuleFileNameA | |
| KERNEL32.dll | 172 | FindNextFileA | |
| KERNEL32.dll | 77 | CreateThread | |
| KERNEL32.dll | 141 | ExitThread | |
| KERNEL32.dll | 430 | GlobalUnlock | |
| KERNEL32.dll | 423 | GlobalLock | |
| KERNEL32.dll | 469 | IsDBCSLeadByteEx | |
| KERNEL32.dll | 821 | lstrlenA | |
| KERNEL32.dll | 652 | SetEndOfFile | |
| KERNEL32.dll | 43 | CopyFileA | |
| KERNEL32.dll | 140 | ExitProcess | |
| KERNEL32.dll | 314 | GetModuleHandleA | |
| KERNEL32.dll | 218 | GetCommandLineA | |
| KERNEL32.dll | 346 | GetProcessTimes | |
| KERNEL32.dll | 265 | GetCurrentProcess | |
| KERNEL32.dll | 692 | SetThreadPriority | |
| KERNEL32.dll | 52 | CreateEventA | |
| KERNEL32.dll | 656 | SetEvent | |
| KERNEL32.dll | 459 | InterlockedIncrement | |
| KERNEL32.dll | 456 | InterlockedDecrement | |
| KERNEL32.dll | 594 | ResetEvent | |
| KERNEL32.dll | 763 | WaitForMultipleObjects | |
| KERNEL32.dll | 386 | GetThreadPriority | |
| KERNEL32.dll | 267 | GetCurrentThread | |
| KERNEL32.dll | 163 | FindFirstFileA | |
| KERNEL32.dll | 293 | GetFileSize | |
| KERNEL32.dll | 661 | SetFilePointer | |
| KERNEL32.dll | 382 | GetTempPathA | |
| KERNEL32.dll | 380 | GetTempFileNameA | |
| KERNEL32.dll | 782 | WriteFile | |
| KERNEL32.dll | 573 | ReadFile | |
| KERNEL32.dll | 55 | CreateFileA | |
| KERNEL32.dll | 48 | CreateDirectoryA | |
| KERNEL32.dll | 587 | RemoveDirectoryA | |
| KERNEL32.dll | 507 | MoveFileA | |
| KERNEL32.dll | 92 | DeleteFileA | |
| KERNEL32.dll | 288 | GetFileAttributesA | |
| KERNEL32.dll | 712 | SystemTimeToFileTime | |
| KERNEL32.dll | 372 | GetSystemTime | |
| KERNEL32.dll | 478 | LeaveCriticalSection | |
| KERNEL32.dll | 393 | GetTimeZoneInformation | |
| KERNEL32.dll | 366 | GetSystemDefaultLangID | |
| KERNEL32.dll | 195 | FreeLibrary | |
| KERNEL32.dll | 395 | GetUserDefaultLangID | |
| KERNEL32.dll | 301 | GetLastError | |
| KERNEL32.dll | 358 | GetStartupInfoA | |
| KERNEL32.dll | 71 | CreateProcessA | |
| KERNEL32.dll | 30 | CloseHandle | |
| KERNEL32.dll | 268 | GetCurrentThreadId | |
| KERNEL32.dll | 655 | SetErrorMode | |
| KERNEL32.dll | 479 | LoadLibraryA | |
| KERNEL32.dll | 339 | GetProcAddress | |
| KERNEL32.dll | 555 | QueryPerformanceCounter | |
| KERNEL32.dll | 556 | QueryPerformanceFrequency | |
| KERNEL32.dll | 468 | IsDBCSLeadByte | |
| KERNEL32.dll | 201 | GetACP | |
| KERNEL32.dll | 207 | GetCPInfo | |
| KERNEL32.dll | 514 | MultiByteToWideChar | |
| KERNEL32.dll | 399 | GetVersionExA | |
| KERNEL32.dll | 419 | GlobalFree | |
| KERNEL32.dll | 412 | GlobalAlloc | |
| KERNEL32.dll | 90 | DeleteCriticalSection | |
| KERNEL32.dll | 453 | InitializeCriticalSection | |
| KERNEL32.dll | 111 | EnterCriticalSection | |
| KERNEL32.dll | 707 | Sleep | |
| USER32.dll | 189 | EndPaint | |
| USER32.dll | 12 | BeginPaint | |
| USER32.dll | 287 | GetMenu | |
| USER32.dll | 144 | DestroyWindow | |
| USER32.dll | 266 | GetFocus | |
| USER32.dll | 90 | CreateWindowExA | |
| USER32.dll | 403 | IsWindow | |
| USER32.dll | 134 | DefWindowProcA | |
| USER32.dll | 346 | GetWindowLongA | |
| USER32.dll | 61 | CloseClipboard | |
| USER32.dll | 245 | GetClipboardData | |
| USER32.dll | 394 | IsClipboardFormatAvailable | |
| USER32.dll | 472 | OpenClipboard | |
| USER32.dll | 551 | SetClipboardData | |
| USER32.dll | 182 | EmptyClipboard | |
| USER32.dll | 608 | SetWindowPos | |
| USER32.dll | 352 | GetWindowRect | |
| USER32.dll | 342 | GetWindow | |
| USER32.dll | 656 | UnregisterClassA | |
| USER32.dll | 151 | DispatchMessageA | |
| USER32.dll | 647 | TranslateMessage | |
| USER32.dll | 644 | TranslateAcceleratorA | |
| USER32.dll | 301 | GetMessageA | |
| USER32.dll | 410 | LoadAcceleratorsA | |
| USER32.dll | 502 | RegisterClassA | |
| USER32.dll | 418 | LoadIconA | |
| USER32.dll | 662 | UpdateWindow | |
| USER32.dll | 623 | ShowWindow | |
| USER32.dll | 485 | PostQuitMessage | |
| USER32.dll | 149 | DialogBoxParamA | |
| USER32.dll | 187 | EndDialog | |
| USER32.dll | 462 | MoveWindow | |
| USER32.dll | 258 | GetDesktopWindow | |
| USER32.dll | 560 | SetDlgItemTextA | |
| USER32.dll | 185 | EnableWindow | |
| USER32.dll | 263 | GetDlgItemTextA | |
| USER32.dll | 355 | GetWindowTextLengthA | |
| USER32.dll | 261 | GetDlgItem | |
| USER32.dll | 570 | SetMenu | |
| USER32.dll | 486 | PostThreadMessageA | |
| USER32.dll | 319 | GetQueueStatus | |
| USER32.dll | 481 | PeekMessageA | |
| USER32.dll | 463 | MsgWaitForMultipleObjects | |
| USER32.dll | 516 | RegisterWindowMessageA | |
| USER32.dll | 414 | LoadCursorA | |
| USER32.dll | 554 | SetCursor | |
| USER32.dll | 409 | KillTimer | |
| USER32.dll | 599 | SetTimer | |
| USER32.dll | 214 | FillRect | |
| USER32.dll | 325 | GetSubMenu | |
| USER32.dll | 518 | ReleaseCapture | |
| USER32.dll | 630 | SystemParametersInfoA | |
| USER32.dll | 526 | ScreenToClient | |
| USER32.dll | 426 | LoadMenuA | |
| USER32.dll | 294 | GetMenuItemID | |
| USER32.dll | 137 | DeleteMenu | |
| USER32.dll | 59 | ClientToScreen | |
| USER32.dll | 641 | TrackPopupMenu | |
| USER32.dll | 143 | DestroyMenu | |
| USER32.dll | 563 | SetFocus | |
| USER32.dll | 545 | SetCapture | |
| USER32.dll | 231 | GetCapture | |
| USER32.dll | 255 | GetCursorPos | |
| USER32.dll | 688 | WindowFromPoint | |
| USER32.dll | 243 | GetClientRect | |
| USER32.dll | 431 | LoadStringA | |
| USER32.dll | 183 | EnableMenuItem | |
| USER32.dll | 52 | CheckMenuItem | |
| USER32.dll | 382 | InvalidateRect | |
| USER32.dll | 605 | SetWindowLongA | |
| USER32.dll | 682 | WaitForInputIdle | |
| USER32.dll | 442 | MapVirtualKeyA | |
| USER32.dll | 277 | GetKeyState | |
| USER32.dll | 293 | GetMenuItemCount | |
| USER32.dll | 295 | GetMenuItemInfoA | |
| USER32.dll | 377 | InsertMenuItemA | |
| USER32.dll | 329 | GetSystemMetrics | |
| USER32.dll | 114 | DdeInitializeA | |
| USER32.dll | 103 | DdeCreateStringHandleA | |
| USER32.dll | 100 | DdeConnect | |
| USER32.dll | 98 | DdeClientTransaction | |
| USER32.dll | 105 | DdeDisconnect | |
| USER32.dll | 109 | DdeFreeStringHandle | |
| USER32.dll | 127 | DdeUninitialize | |
| USER32.dll | 278 | GetKeyboardLayout | |
| USER32.dll | 256 | GetDC | |
| USER32.dll | 519 | ReleaseDC | |
| USER32.dll | 265 | GetDoubleClickTime | |
| USER32.dll | 451 | MessageBoxA | |
| USER32.dll | 483 | PostMessageA | |
| GDI32.dll | 518 | StartPage | |
| GDI32.dll | 294 | GetCurrentObject | |
| GDI32.dll | 459 | SelectClipPath | |
| GDI32.dll | 172 | FillPath | |
| GDI32.dll | 157 | ExtCreatePen | |
| GDI32.dll | 522 | StrokePath | |
| GDI32.dll | 91 | EndDoc | |
| GDI32.dll | 94 | EndPath | |
| GDI32.dll | 468 | SetBkColor | |
| GDI32.dll | 515 | StartDocA | |
| GDI32.dll | 395 | LPtoDP | |
| GDI32.dll | 290 | GetClipBox | |
| GDI32.dll | 78 | CreateSolidBrush | |
| GDI32.dll | 363 | GetSystemPaletteEntries | |
| GDI32.dll | 67 | CreatePalette | |
| GDI32.dll | 271 | GetBkColor | |
| GDI32.dll | 422 | PolyBezierTo | |
| GDI32.dll | 397 | LineTo | |
| GDI32.dll | 401 | MoveToEx | |
| GDI32.dll | 498 | SetPolyFillMode | |
| GDI32.dll | 17 | BeginPath | |
| GDI32.dll | 448 | RestoreDC | |
| GDI32.dll | 455 | SaveDC | |
| GDI32.dll | 223 | GdiFlush | |
| GDI32.dll | 84 | DeleteObject | |
| GDI32.dll | 462 | SelectObject | |
| GDI32.dll | 520 | StretchDIBits | |
| GDI32.dll | 478 | SetDIBitsToDevice | |
| GDI32.dll | 42 | CreateCompatibleBitmap | |
| GDI32.dll | 343 | GetObjectA | |
| GDI32.dll | 81 | DeleteDC | |
| GDI32.dll | 48 | CreateDIBSection | |
| GDI32.dll | 301 | GetDeviceCaps | |
| GDI32.dll | 43 | CreateCompatibleDC | |
| GDI32.dll | 18 | BitBlt | |
| GDI32.dll | 435 | RealizePalette | |
| GDI32.dll | 463 | SelectPalette | |
| GDI32.dll | 142 | EnumFontFamiliesA | |
| GDI32.dll | 469 | SetBkMode | |
| GDI32.dll | 504 | SetTextAlign | |
| GDI32.dll | 393 | IntersectClipRect | |
| GDI32.dll | 460 | SelectClipRgn | |
| GDI32.dll | 162 | ExtTextOutA | |
| GDI32.dll | 163 | ExtTextOutW | |
| GDI32.dll | 506 | SetTextColor | |
| GDI32.dll | 382 | GetTextMetricsA | |
| GDI32.dll | 56 | CreateFontIndirectA | |
| GDI32.dll | 69 | CreatePen | |
| GDI32.dll | 291 | GetClipRgn | |
| GDI32.dll | 73 | CreateRectRgn | |
| GDI32.dll | 365 | GetTextAlign | |
| GDI32.dll | 272 | GetBkMode | |
| GDI32.dll | 369 | GetTextColor | |
| GDI32.dll | 79 | DPtoLP | |
| GDI32.dll | 374 | GetTextExtentPoint32A | |
| GDI32.dll | 375 | GetTextExtentPoint32W | |
| GDI32.dll | 93 | EndPage | |
| comdlg32.dll | 9 | GetOpenFileNameA | |
| comdlg32.dll | 11 | GetSaveFileNameA | |
| comdlg32.dll | 16 | PrintDlgA | |
| ADVAPI32.dll | 391 | RegCreateKeyA | |
| ADVAPI32.dll | 423 | RegQueryValueExA | |
| ADVAPI32.dll | 413 | RegOpenKeyExA | |
| ADVAPI32.dll | 433 | RegSetValueA | |
| ADVAPI32.dll | 388 | RegCloseKey | |
| ADVAPI32.dll | 434 | RegSetValueExA | |
| SHELL32.dll | 21 | DragQueryFileA | |
| SHELL32.dll | 18 | DragAcceptFiles | |
| WINMM.dll | 188 | waveOutReset | |
| WINMM.dll | 194 | waveOutWrite | |
| WINMM.dll | 187 | waveOutPrepareHeader | |
| WINMM.dll | 158 | waveInGetDevCapsA | |
| WINMM.dll | 179 | waveOutGetNumDevs | |
| WINMM.dll | 193 | waveOutUnprepareHeader | |
| WINMM.dll | 173 | waveOutClose | |
| WINMM.dll | 185 | waveOutOpen | |
| WINMM.dll | 174 | waveOutGetDevCapsA | |
| WINMM.dll | 163 | waveInGetNumDevs | |
| WINMM.dll | 169 | waveInStart | |
| WINMM.dll | 156 | waveInAddBuffer | |
| WINMM.dll | 170 | waveInStop | |
| WINMM.dll | 167 | waveInPrepareHeader | |
| WINMM.dll | 166 | waveInOpen | |
| WINMM.dll | 157 | waveInClose | |
| WINMM.dll | 171 | waveInUnprepareHeader | |
| WINMM.dll | 168 | waveInReset | |
| WINMM.dll | 153 | timeGetTime | |
| WINMM.dll | 150 | timeEndPeriod | |
| WINMM.dll | 149 | timeBeginPeriod | |
| WINMM.dll | 151 | timeGetDevCaps | |
| WINMM.dll | 155 | timeSetEvent | |
| WINMM.dll | 154 | timeKillEvent |
StringTable 040904b0
| CompanyName | Macromedia, Inc. |
| FileDescription | Macromedia Flash Player 7.0 r14 |
| FileVersion | 7,0,14,0 |
| InternalName | Macromedia Flash Player 7.0 |
| LegalCopyright | Copyright © 1996-2003 Macromedia, Inc. |
| LegalTrademarks | Macromedia Flash Player |
| OriginalFilename | SAFlashPlayer.exe |
| ProductName | Shockwave Flash |
| ProductVersion | 7,0,14,0 |
VS_FIXEDFILEINFO
| FileVersion | 7.0.14.0 |
| ProductVersion | 7.0.14.0 |
| StrucVersion | 0x10000 |
| FileFlagsMask | 0x3f |
| FileFlags | 0 |
| FileOS | 4 |
| FileType | 2 |
| FileSubtype | 0 |
Scanning the drive for archives: 1 file, 13171413 bytes (13 MiB) Errors: 1
![]() |
| Please donate some bucks to keep this site up and running: | |
| Ko-fi | |
|---|---|
| Yandex.Money | |
| Thank you! | |
everything is OK
offset:( 0x )