filename | Virus.Win9x.Arianne.1022.b | |
---|---|---|
size | 94112 (0x16fa0) | |
md5 | 166dbceace92b0f8dd5bc22b6e35fb9d | |
type | PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows | |
mimetype | application/x-dosexec | |
clamav | Win.Trojan.W-48 FOUND | |
virustotal | → scan with virustotal.com | |
histogram |
MZ Header
signature | MZ |
bytes_in_last_block | 0x90 |
blocks_in_file | 3 |
num_relocs | 0 |
header_paragraphs | 4 |
min_extra_paragraphs | 0 |
max_extra_paragraphs | 0xffff |
ss | 0 |
sp | 0xb8 |
checksum | 0 |
ip | 0 |
cs | 0 |
reloc_table_offset | 0x40 |
overlay_number | 0 |
reserved0 | 0 |
oem_id | 0 |
oem_info | 0 |
reserved2 | 0 |
reserved3 | 0 |
reserved4 | 0 |
reserved5 | 0 |
reserved6 | 0 |
lfanew | 0x80 |
DOS stub
00000000: 0e 1f ba 0e 00 b4 09 cd 21 b8 01 4c cd 21 54 68 |........!..L.!Th| 00000010: 69 73 20 70 72 6f 67 72 61 6d 20 63 61 6e 6e 6f |is program canno| 00000020: 74 20 62 65 20 72 75 6e 20 69 6e 20 44 4f 53 20 |t be run in DOS | 00000030: 6d 6f 64 65 2e 0d 0d 0a 24 00 00 00 00 00 00 00 |mode....$.......|
PE Header
Packer / Compiler
Sections
name | va | vsize | raw size | flags | |
---|---|---|---|---|---|
.text | 0x1000 | 0xed3c | 0xee00 | R-X CODE | |
.data | 0x10000 | 0x120d4 | 0x4800 | RW- IDATA | |
.rsrc | 0x23000 | 0x1428 | 0x1600 | R-- IDATA | |
.t00fic | 0x25000 | 0x1000 | 0x400 | RWX |
Data Directory
type | va | size | |
---|---|---|---|
EXPORT | 0 | 0 | |
IMPORT | 0xee88 | 0xa0 | |
RESOURCE | 0x23000 | 0x1428 | |
EXCEPTION | 0 | 0 | |
SECURITY | 0 | 0 | |
BASERELOC | 0 | 0 | |
DEBUG | 0x12d0 | 0x38 | |
ARCHITECTURE | 0 | 0 | |
GLOBALPTR | 0 | 0 | |
TLS | 0 | 0 | |
LOAD_CONFIG | 0 | 0 | |
Bound_IAT | 0 | 0 | |
IAT | 0x1000 | 0x2c4 | |
Delay_IAT | 0 | 0 | |
CLR_Header | 0 | 0 |
type | name | size | cp | |
---|---|---|---|---|
ICON | #1 | 304 | 0 | |
ICON | #2 | 744 | 0 | |
DIALOG | #2003 | 1036 | 0 | |
STRING | #1 | 74 | 0 | |
STRING | #63 | 134 | 0 | |
STRING | #64 | 56 | 0 | |
STRING | #65 | 106 | 0 | |
STRING | #66 | 80 | 0 | |
STRING | #563 | 156 | 0 | |
STRING | #564 | 522 | 0 | |
STRING | #565 | 74 | 0 | |
STRING | #571 | 110 | 0 | |
GROUP_ICON | #100 | 34 | 0 | |
VERSION | #1 | 868 | 0 |
id | lang | string |
---|---|---|
1 | 1033 | 3D FlowerBox (OpenGL) |
1000 | 1033 | Smooth |
1001 | 1033 | Slanted |
1002 | 1033 | Cycle |
1003 | 1033 | Spin |
1004 | 1033 | Bloom |
1005 | 1033 | Subdiv |
1006 | 1033 | ColorPick |
1007 | 1033 | ImageSize |
1008 | 1033 | Geom |
1009 | 1033 | TwoSided |
1025 | 1033 | Cube |
1026 | 1033 | Tetrahedron |
1027 | 1033 | Pyramids |
1028 | 1033 | Cylinder |
1029 | 1033 | Spring |
1051 | 1033 | Screen Saver.3DFlowerBox |
9001 | 1033 | Copyright (c) 1994 Microsoft Corporation |
9003 | 1033 | ScreenSaver |
9006 | 1033 | control.ini |
9014 | 1033 | Warning |
9015 | 1033 | Error |
9016 | 1033 | The texture must not be larger than %ld by %ld pixels. |
9017 | 1033 | The texture you selected is not valid. |
9018 | 1033 | Please select another texture for the screen saver. %s is not valid. |
9019 | 1033 | Screen saver failed to start. |
9021 | 1033 | Texture files (*.bmp) |
9022 | 1033 | Choose Texture File |
9023 | 1033 | BMP |
9024 | 1033 | .BMP |
9025 | 1033 | *.BMP |
9030 | 1033 | RGB |
9031 | 1033 | .RGB |
9032 | 1033 | *.RGB |
9126 | 1033 | Texture |
9127 | 1033 | TextureFileOffset |
9129 | 1033 | Size |
9130 | 1033 | Tesselation |
module_name | hint | ord | function_name |
---|---|---|---|
ADVAPI32.dll | 357 | RegQueryValueExA | |
ADVAPI32.dll | 347 | RegOpenKeyA | |
ADVAPI32.dll | 348 | RegOpenKeyExA | |
ADVAPI32.dll | 325 | RegCloseKey | |
ADVAPI32.dll | 1072305460 | ||
ADVAPI32.dll | 1072306602 | ||
ADVAPI32.dll | 1072305361 | ||
ADVAPI32.dll | 1072305732 | ||
KERNEL32.dll | 271 | GetModuleFileNameA | |
KERNEL32.dll | 160 | FreeEnvironmentStringsA | |
KERNEL32.dll | 459 | MultiByteToWideChar | |
KERNEL32.dll | 161 | FreeEnvironmentStringsW | |
KERNEL32.dll | 242 | GetEnvironmentStrings | |
KERNEL32.dll | 635 | TerminateProcess | |
KERNEL32.dll | 244 | GetEnvironmentStringsW | |
KERNEL32.dll | 684 | WideCharToMultiByte | |
KERNEL32.dll | 173 | GetCPInfo | |
KERNEL32.dll | 167 | GetACP | |
KERNEL32.dll | 284 | GetOEMCP | |
KERNEL32.dll | 589 | SetHandleCount | |
KERNEL32.dll | 317 | GetStdHandle | |
KERNEL32.dll | 256 | GetFileType | |
KERNEL32.dll | 388 | HeapDestroy | |
KERNEL32.dll | 386 | HeapCreate | |
KERNEL32.dll | 665 | VirtualFree | |
KERNEL32.dll | 352 | GetVersionExA | |
KERNEL32.dll | 661 | VirtualAlloc | |
KERNEL32.dll | 347 | GetTimeZoneInformation | |
KERNEL32.dll | 422 | LCMapStringA | |
KERNEL32.dll | 423 | LCMapStringW | |
KERNEL32.dll | 318 | GetStringTypeA | |
KERNEL32.dll | 321 | GetStringTypeW | |
KERNEL32.dll | 261 | GetLastError | |
KERNEL32.dll | 31 | CompareStringA | |
KERNEL32.dll | 32 | CompareStringW | |
KERNEL32.dll | 579 | SetEnvironmentVariableA | |
KERNEL32.dll | 587 | SetFilePointer | |
KERNEL32.dll | 393 | HeapReAlloc | |
KERNEL32.dll | 604 | SetStdHandle | |
KERNEL32.dll | 152 | FlushFileBuffers | |
KERNEL32.dll | 384 | HeapAlloc | |
KERNEL32.dll | 262 | GetLocalTime | |
KERNEL32.dll | 351 | GetVersion | |
KERNEL32.dll | 509 | ReadFile | |
KERNEL32.dll | 25 | CloseHandle | |
KERNEL32.dll | 227 | GetCurrentProcess | |
KERNEL32.dll | 286 | GetPriorityClass | |
KERNEL32.dll | 599 | SetPriorityClass | |
KERNEL32.dll | 435 | LocalFree | |
KERNEL32.dll | 738 | lstrlenA | |
KERNEL32.dll | 182 | GetCommandLineA | |
KERNEL32.dll | 315 | GetStartupInfoA | |
KERNEL32.dll | 117 | ExitProcess | |
KERNEL32.dll | 344 | GetTickCount | |
KERNEL32.dll | 425 | LoadLibraryA | |
KERNEL32.dll | 390 | HeapFree | |
KERNEL32.dll | 162 | FreeLibrary | |
KERNEL32.dll | 297 | GetProcAddress | |
KERNEL32.dll | 627 | Sleep | |
KERNEL32.dll | 648 | UnhandledExceptionFilter | |
KERNEL32.dll | 287 | GetPrivateProfileIntA | |
KERNEL32.dll | 530 | RtlUnwind | |
KERNEL32.dll | 697 | WriteFile | |
KERNEL32.dll | 703 | WritePrivateProfileStringA | |
KERNEL32.dll | 273 | GetModuleHandleA | |
KERNEL32.dll | 431 | LocalAlloc | |
KERNEL32.dll | 1073182447 | ||
KERNEL32.dll | 1073303362 | ||
KERNEL32.dll | 1073184121 | ||
KERNEL32.dll | 1073381597 | ||
KERNEL32.dll | 1073257390 | ||
KERNEL32.dll | 1073302792 | ||
KERNEL32.dll | 1073381588 | ||
KERNEL32.dll | 1073184151 | ||
KERNEL32.dll | 1073184198 | ||
KERNEL32.dll | 1073271151 | ||
KERNEL32.dll | 1073283132 | ||
KERNEL32.dll | 1073328776 | ||
KERNEL32.dll | 1073174376 | ||
KERNEL32.dll | 1073174649 | ||
KERNEL32.dll | 1073180315 | ||
KERNEL32.dll | 1073249252 | ||
KERNEL32.dll | 1073230288 | ||
KERNEL32.dll | 1073284545 | ||
KERNEL32.dll | 1073213425 | ||
KERNEL32.dll | 1073347535 | ||
KERNEL32.dll | 1073184091 | ||
KERNEL32.dll | 1073381714 | ||
KERNEL32.dll | 1073184053 | ||
KERNEL32.dll | 1073381678 | ||
KERNEL32.dll | 1073234169 | ||
KERNEL32.dll | 1073350872 | ||
KERNEL32.dll | 1073348659 | ||
KERNEL32.dll | 1073180979 | ||
KERNEL32.dll | 1073180381 | ||
KERNEL32.dll | 1073174444 | ||
KERNEL32.dll | 1073329555 | ||
KERNEL32.dll | 1073180348 | ||
KERNEL32.dll | 1073181132 | ||
KERNEL32.dll | 1073290831 | ||
KERNEL32.dll | 1073180721 | ||
KERNEL32.dll | 1073205355 | ||
KERNEL32.dll | 1073304190 | ||
KERNEL32.dll | 1073336319 | ||
KERNEL32.dll | 1073276312 | ||
KERNEL32.dll | 1073170888 | ||
KERNEL32.dll | 1073181601 | ||
KERNEL32.dll | 1073264071 | ||
KERNEL32.dll | 1073182629 | ||
KERNEL32.dll | 1073267941 | ||
KERNEL32.dll | 1073179184 | ||
KERNEL32.dll | 1073182408 | ||
KERNEL32.dll | 1073180424 | ||
KERNEL32.dll | 1073271020 | ||
KERNEL32.dll | 1073180064 | ||
KERNEL32.dll | 1073290300 | ||
KERNEL32.dll | 1073334144 | ||
KERNEL32.dll | 1073345755 | ||
KERNEL32.dll | 1073247098 | ||
KERNEL32.dll | 1073180617 | ||
KERNEL32.dll | 1073182907 | ||
KERNEL32.dll | 1073182478 | ||
KERNEL32.dll | 1073170604 | ||
GDI32.dll | 59 | CreatePalette | |
GDI32.dll | 13 | BitBlt | |
GDI32.dll | 294 | GetSystemPaletteUse | |
GDI32.dll | 379 | SelectPalette | |
GDI32.dll | 293 | GetSystemPaletteEntries | |
GDI32.dll | 34 | CreateCompatibleBitmap | |
GDI32.dll | 231 | GetDIBits | |
GDI32.dll | 225 | GetCurrentObject | |
GDI32.dll | 273 | GetObjectA | |
GDI32.dll | 278 | GetPaletteEntries | |
GDI32.dll | 392 | SetDIBColorTable | |
GDI32.dll | 274 | GetObjectType | |
GDI32.dll | 40 | CreateDIBSection | |
GDI32.dll | 436 | SwapBuffers | |
GDI32.dll | 77 | DescribePixelFormat | |
GDI32.dll | 432 | StretchBlt | |
GDI32.dll | 155 | GdiFlush | |
GDI32.dll | 35 | CreateCompatibleDC | |
GDI32.dll | 378 | SelectObject | |
GDI32.dll | 76 | DeleteObject | |
GDI32.dll | 73 | DeleteDC | |
GDI32.dll | 441 | UnrealizeObject | |
GDI32.dll | 356 | RealizePalette | |
GDI32.dll | 417 | SetSystemPaletteUse | |
GDI32.dll | 289 | GetStockObject | |
GDI32.dll | 232 | GetDeviceCaps | |
GDI32.dll | 16 | ChoosePixelFormat | |
GDI32.dll | 410 | SetPixelFormat | |
GDI32.dll | 1072832933 | ||
GDI32.dll | 1072833171 | ||
GDI32.dll | 1072833736 | ||
GDI32.dll | 1072836590 | ||
GDI32.dll | 1072832725 | ||
GDI32.dll | 1072835885 | ||
GDI32.dll | 1072829497 | ||
GDI32.dll | 1072842648 | ||
GDI32.dll | 1072829581 | ||
GDI32.dll | 1072832721 | ||
GDI32.dll | 1072832713 | ||
GDI32.dll | 1072844193 | ||
GDI32.dll | 1072836946 | ||
GDI32.dll | 1072855309 | ||
GDI32.dll | 1072855145 | ||
GDI32.dll | 1072833226 | ||
GDI32.dll | 1072837821 | ||
GDI32.dll | 1072833752 | ||
GDI32.dll | 1072833790 | ||
GDI32.dll | 1072834626 | ||
GDI32.dll | 1072834618 | ||
GDI32.dll | 1072834614 | ||
GDI32.dll | 1072836596 | ||
GDI32.dll | 1072833786 | ||
GDI32.dll | 1072843027 | ||
GDI32.dll | 1072830191 | ||
GDI32.dll | 1072855093 | ||
GDI32.dll | 1072855253 | ||
USER32.dll | 584 | SetSysColors | |
USER32.dll | 525 | SendDlgItemMessageA | |
USER32.dll | 398 | IsWindow | |
USER32.dll | 322 | GetSysColor | |
USER32.dll | 212 | FillRect | |
USER32.dll | 600 | SetWindowPos | |
USER32.dll | 332 | GetUpdateRect | |
USER32.dll | 88 | CreateWindowExA | |
USER32.dll | 615 | ShowWindow | |
USER32.dll | 513 | ReleaseDC | |
USER32.dll | 253 | GetDC | |
USER32.dll | 11 | BeginPaint | |
USER32.dll | 187 | EndPaint | |
USER32.dll | 404 | KillTimer | |
USER32.dll | 591 | SetTimer | |
USER32.dll | 142 | DestroyWindow | |
USER32.dll | 413 | LoadIconA | |
USER32.dll | 496 | RegisterClassA | |
USER32.dll | 409 | LoadCursorA | |
USER32.dll | 240 | GetClientRect | |
USER32.dll | 213 | FindWindowA | |
USER32.dll | 558 | SetForegroundWindow | |
USER32.dll | 147 | DialogBoxParamA | |
USER32.dll | 298 | GetMessageA | |
USER32.dll | 639 | TranslateMessage | |
USER32.dll | 149 | DispatchMessageA | |
USER32.dll | 325 | GetSystemMetrics | |
USER32.dll | 26 | ChangeDisplaySettingsA | |
USER32.dll | 36 | CharNextA | |
USER32.dll | 475 | PeekMessageA | |
USER32.dll | 479 | PostQuitMessage | |
USER32.dll | 309 | GetParent | |
USER32.dll | 548 | SetCursor | |
USER32.dll | 252 | GetCursorPos | |
USER32.dll | 477 | PostMessageA | |
USER32.dll | 132 | DefWindowProcA | |
USER32.dll | 622 | SystemParametersInfoA | |
USER32.dll | 530 | SendMessageA | |
USER32.dll | 264 | GetForegroundWindow | |
USER32.dll | 185 | EndDialog | |
USER32.dll | 679 | wsprintfA | |
USER32.dll | 258 | GetDlgItem | |
USER32.dll | 53 | CheckRadioButton | |
USER32.dll | 50 | CheckDlgButton | |
USER32.dll | 426 | LoadStringA | |
USER32.dll | 557 | SetFocus | |
USER32.dll | 1073031831 | ||
USER32.dll | 1073043484 | ||
USER32.dll | 1073041049 | ||
USER32.dll | 1073040454 | ||
USER32.dll | 1073029494 | ||
USER32.dll | 1073026411 | ||
USER32.dll | 1073027261 | ||
USER32.dll | 1073044581 | ||
USER32.dll | 1073029272 | ||
USER32.dll | 1073029264 | ||
USER32.dll | 1073030301 | ||
USER32.dll | 1073027115 | ||
USER32.dll | 1073027196 | ||
USER32.dll | 1073028013 | ||
USER32.dll | 1073033358 | ||
USER32.dll | 1073030351 | ||
USER32.dll | 1073043949 | ||
USER32.dll | 1073038178 | ||
USER32.dll | 1073043971 | ||
USER32.dll | 1073041337 | ||
USER32.dll | 1073043724 | ||
USER32.dll | 1073030331 | ||
USER32.dll | 1073033173 | ||
USER32.dll | 1073043249 | ||
USER32.dll | 1073043293 | ||
USER32.dll | 1073039155 | ||
USER32.dll | 1073042154 | ||
USER32.dll | 1073033845 | ||
USER32.dll | 1073039678 | ||
USER32.dll | 1073043457 | ||
USER32.dll | 1073030335 | ||
USER32.dll | 1073030257 | ||
USER32.dll | 1073032586 | ||
USER32.dll | 1073028846 | ||
USER32.dll | 1073043196 | ||
USER32.dll | 1073044417 | ||
USER32.dll | 1073025641 | ||
USER32.dll | 1073043498 | ||
USER32.dll | 1073041897 | ||
USER32.dll | 1073028009 | ||
USER32.dll | 1073042821 | ||
USER32.dll | 1073041136 | ||
USER32.dll | 1073026956 | ||
USER32.dll | 1073026925 | ||
USER32.dll | 1073042816 | ||
USER32.dll | 1073030277 | ||
OPENGL32.dll | 255 | glRotated | |
OPENGL32.dll | 17 | glClear | |
OPENGL32.dll | 178 | glMaterialf | |
OPENGL32.dll | 98 | glFlush | |
OPENGL32.dll | 97 | glFinish | |
OPENGL32.dll | 343 | glViewport | |
OPENGL32.dll | 259 | glScissor | |
OPENGL32.dll | 346 | wglCreateContext | |
OPENGL32.dll | 357 | wglMakeCurrent | |
OPENGL32.dll | 348 | wglDeleteContext | |
OPENGL32.dll | 356 | wglGetProcAddress | |
OPENGL32.dll | 125 | glGetString | |
OPENGL32.dll | 261 | glShadeModel | |
OPENGL32.dll | 75 | glDrawElements | |
OPENGL32.dll | 11 | glBegin | |
OPENGL32.dll | 191 | glNormal3fv | |
OPENGL32.dll | 329 | glVertex3fv | |
OPENGL32.dll | 82 | glEnd | |
OPENGL32.dll | 196 | glNormalPointer | |
OPENGL32.dll | 342 | glVertexPointer | |
OPENGL32.dll | 81 | glEnableClientState | |
OPENGL32.dll | 72 | glDisableClientState | |
OPENGL32.dll | 182 | glMatrixMode | |
OPENGL32.dll | 20 | glClearDepth | |
OPENGL32.dll | 64 | glCullFace | |
OPENGL32.dll | 159 | glLightfv | |
OPENGL32.dll | 156 | glLightModeli | |
OPENGL32.dll | 71 | glDisable | |
OPENGL32.dll | 80 | glEnable | |
OPENGL32.dll | 179 | glMaterialfv | |
OPENGL32.dll | 165 | glLoadIdentity | |
COMCTL32.dll | 17 | ||
COMCTL32.dll | 1072436256 | ||
GLU32.dll | 21 | gluLookAt | |
GLU32.dll | 32 | gluPerspective |
StringTable 040904B0
CompanyName | Microsoft Corporation |
FileDescription | OpenGL 3D Flowerbox Screen Saver |
FileVersion | 5.00.1679.1 |
InternalName | ssflwbox |
LegalCopyright | Copyright (C) Microsoft Corp. 1981-1997 |
OriginalFilename | ssflwbox |
ProductName | Microsoft(R) Windows NT(R) Operating System |
ProductVersion | 5.00.1679.1 |
VS_FIXEDFILEINFO
FileVersion | 5.0.1679.1 |
ProductVersion | 5.0.1679.1 |
StrucVersion | 0x10000 |
FileFlagsMask | 0x3f |
FileFlags | 0 |
FileOS | 0x40004 |
FileType | 1 |
FileSubtype | 0 |
Please donate some bucks to keep this site up and running: | |
Ko-fi | |
---|---|
Yandex.Money | |
Thank you! |
everything is OK