| filename | Virus.Win9x.Arianne.1022.b | |
|---|---|---|
| size | 94112 (0x16fa0) | |
| md5 | 166dbceace92b0f8dd5bc22b6e35fb9d | |
| type | PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows | |
| mimetype | application/x-dosexec | |
| clamav | Win.Trojan.W-48 FOUND | |
| virustotal | → scan with virustotal.com | |
| histogram | ||
MZ Header
| signature | MZ |
| bytes_in_last_block | 0x90 |
| blocks_in_file | 3 |
| num_relocs | 0 |
| header_paragraphs | 4 |
| min_extra_paragraphs | 0 |
| max_extra_paragraphs | 0xffff |
| ss | 0 |
| sp | 0xb8 |
| checksum | 0 |
| ip | 0 |
| cs | 0 |
| reloc_table_offset | 0x40 |
| overlay_number | 0 |
| reserved0 | 0 |
| oem_id | 0 |
| oem_info | 0 |
| reserved2 | 0 |
| reserved3 | 0 |
| reserved4 | 0 |
| reserved5 | 0 |
| reserved6 | 0 |
| lfanew | 0x80 |
DOS stub
00000000: 0e 1f ba 0e 00 b4 09 cd 21 b8 01 4c cd 21 54 68 |........!..L.!Th| 00000010: 69 73 20 70 72 6f 67 72 61 6d 20 63 61 6e 6e 6f |is program canno| 00000020: 74 20 62 65 20 72 75 6e 20 69 6e 20 44 4f 53 20 |t be run in DOS | 00000030: 6d 6f 64 65 2e 0d 0d 0a 24 00 00 00 00 00 00 00 |mode....$.......|
PE Header
Packer / Compiler
Sections
| name | va | vsize | raw size | flags | |
|---|---|---|---|---|---|
| .text | 0x1000 | 0xed3c | 0xee00 | R-X CODE | |
| .data | 0x10000 | 0x120d4 | 0x4800 | RW- IDATA | |
| .rsrc | 0x23000 | 0x1428 | 0x1600 | R-- IDATA | |
| .t00fic | 0x25000 | 0x1000 | 0x400 | RWX |
Data Directory
| type | va | size | |
|---|---|---|---|
| EXPORT | 0 | 0 | |
| IMPORT | 0xee88 | 0xa0 | |
| RESOURCE | 0x23000 | 0x1428 | |
| EXCEPTION | 0 | 0 | |
| SECURITY | 0 | 0 | |
| BASERELOC | 0 | 0 | |
| DEBUG | 0x12d0 | 0x38 | |
| ARCHITECTURE | 0 | 0 | |
| GLOBALPTR | 0 | 0 | |
| TLS | 0 | 0 | |
| LOAD_CONFIG | 0 | 0 | |
| Bound_IAT | 0 | 0 | |
| IAT | 0x1000 | 0x2c4 | |
| Delay_IAT | 0 | 0 | |
| CLR_Header | 0 | 0 |
| type | name | size | cp | |
|---|---|---|---|---|
| ICON | #1 | 304 | 0 | |
| ICON | #2 | 744 | 0 | |
| DIALOG | #2003 | 1036 | 0 | |
| STRING | #1 | 74 | 0 | |
| STRING | #63 | 134 | 0 | |
| STRING | #64 | 56 | 0 | |
| STRING | #65 | 106 | 0 | |
| STRING | #66 | 80 | 0 | |
| STRING | #563 | 156 | 0 | |
| STRING | #564 | 522 | 0 | |
| STRING | #565 | 74 | 0 | |
| STRING | #571 | 110 | 0 | |
| GROUP_ICON | #100 | 34 | 0 | |
| VERSION | #1 | 868 | 0 |
| id | lang | string |
|---|---|---|
| 1 | 1033 | 3D FlowerBox (OpenGL) |
| 1000 | 1033 | Smooth |
| 1001 | 1033 | Slanted |
| 1002 | 1033 | Cycle |
| 1003 | 1033 | Spin |
| 1004 | 1033 | Bloom |
| 1005 | 1033 | Subdiv |
| 1006 | 1033 | ColorPick |
| 1007 | 1033 | ImageSize |
| 1008 | 1033 | Geom |
| 1009 | 1033 | TwoSided |
| 1025 | 1033 | Cube |
| 1026 | 1033 | Tetrahedron |
| 1027 | 1033 | Pyramids |
| 1028 | 1033 | Cylinder |
| 1029 | 1033 | Spring |
| 1051 | 1033 | Screen Saver.3DFlowerBox |
| 9001 | 1033 | Copyright (c) 1994 Microsoft Corporation |
| 9003 | 1033 | ScreenSaver |
| 9006 | 1033 | control.ini |
| 9014 | 1033 | Warning |
| 9015 | 1033 | Error |
| 9016 | 1033 | The texture must not be larger than %ld by %ld pixels. |
| 9017 | 1033 | The texture you selected is not valid. |
| 9018 | 1033 | Please select another texture for the screen saver. %s is not valid. |
| 9019 | 1033 | Screen saver failed to start. |
| 9021 | 1033 | Texture files (*.bmp) |
| 9022 | 1033 | Choose Texture File |
| 9023 | 1033 | BMP |
| 9024 | 1033 | .BMP |
| 9025 | 1033 | *.BMP |
| 9030 | 1033 | RGB |
| 9031 | 1033 | .RGB |
| 9032 | 1033 | *.RGB |
| 9126 | 1033 | Texture |
| 9127 | 1033 | TextureFileOffset |
| 9129 | 1033 | Size |
| 9130 | 1033 | Tesselation |
| module_name | hint | ord | function_name |
|---|---|---|---|
| ADVAPI32.dll | 357 | RegQueryValueExA | |
| ADVAPI32.dll | 347 | RegOpenKeyA | |
| ADVAPI32.dll | 348 | RegOpenKeyExA | |
| ADVAPI32.dll | 325 | RegCloseKey | |
| ADVAPI32.dll | 1072305460 | ||
| ADVAPI32.dll | 1072306602 | ||
| ADVAPI32.dll | 1072305361 | ||
| ADVAPI32.dll | 1072305732 | ||
| KERNEL32.dll | 271 | GetModuleFileNameA | |
| KERNEL32.dll | 160 | FreeEnvironmentStringsA | |
| KERNEL32.dll | 459 | MultiByteToWideChar | |
| KERNEL32.dll | 161 | FreeEnvironmentStringsW | |
| KERNEL32.dll | 242 | GetEnvironmentStrings | |
| KERNEL32.dll | 635 | TerminateProcess | |
| KERNEL32.dll | 244 | GetEnvironmentStringsW | |
| KERNEL32.dll | 684 | WideCharToMultiByte | |
| KERNEL32.dll | 173 | GetCPInfo | |
| KERNEL32.dll | 167 | GetACP | |
| KERNEL32.dll | 284 | GetOEMCP | |
| KERNEL32.dll | 589 | SetHandleCount | |
| KERNEL32.dll | 317 | GetStdHandle | |
| KERNEL32.dll | 256 | GetFileType | |
| KERNEL32.dll | 388 | HeapDestroy | |
| KERNEL32.dll | 386 | HeapCreate | |
| KERNEL32.dll | 665 | VirtualFree | |
| KERNEL32.dll | 352 | GetVersionExA | |
| KERNEL32.dll | 661 | VirtualAlloc | |
| KERNEL32.dll | 347 | GetTimeZoneInformation | |
| KERNEL32.dll | 422 | LCMapStringA | |
| KERNEL32.dll | 423 | LCMapStringW | |
| KERNEL32.dll | 318 | GetStringTypeA | |
| KERNEL32.dll | 321 | GetStringTypeW | |
| KERNEL32.dll | 261 | GetLastError | |
| KERNEL32.dll | 31 | CompareStringA | |
| KERNEL32.dll | 32 | CompareStringW | |
| KERNEL32.dll | 579 | SetEnvironmentVariableA | |
| KERNEL32.dll | 587 | SetFilePointer | |
| KERNEL32.dll | 393 | HeapReAlloc | |
| KERNEL32.dll | 604 | SetStdHandle | |
| KERNEL32.dll | 152 | FlushFileBuffers | |
| KERNEL32.dll | 384 | HeapAlloc | |
| KERNEL32.dll | 262 | GetLocalTime | |
| KERNEL32.dll | 351 | GetVersion | |
| KERNEL32.dll | 509 | ReadFile | |
| KERNEL32.dll | 25 | CloseHandle | |
| KERNEL32.dll | 227 | GetCurrentProcess | |
| KERNEL32.dll | 286 | GetPriorityClass | |
| KERNEL32.dll | 599 | SetPriorityClass | |
| KERNEL32.dll | 435 | LocalFree | |
| KERNEL32.dll | 738 | lstrlenA | |
| KERNEL32.dll | 182 | GetCommandLineA | |
| KERNEL32.dll | 315 | GetStartupInfoA | |
| KERNEL32.dll | 117 | ExitProcess | |
| KERNEL32.dll | 344 | GetTickCount | |
| KERNEL32.dll | 425 | LoadLibraryA | |
| KERNEL32.dll | 390 | HeapFree | |
| KERNEL32.dll | 162 | FreeLibrary | |
| KERNEL32.dll | 297 | GetProcAddress | |
| KERNEL32.dll | 627 | Sleep | |
| KERNEL32.dll | 648 | UnhandledExceptionFilter | |
| KERNEL32.dll | 287 | GetPrivateProfileIntA | |
| KERNEL32.dll | 530 | RtlUnwind | |
| KERNEL32.dll | 697 | WriteFile | |
| KERNEL32.dll | 703 | WritePrivateProfileStringA | |
| KERNEL32.dll | 273 | GetModuleHandleA | |
| KERNEL32.dll | 431 | LocalAlloc | |
| KERNEL32.dll | 1073182447 | ||
| KERNEL32.dll | 1073303362 | ||
| KERNEL32.dll | 1073184121 | ||
| KERNEL32.dll | 1073381597 | ||
| KERNEL32.dll | 1073257390 | ||
| KERNEL32.dll | 1073302792 | ||
| KERNEL32.dll | 1073381588 | ||
| KERNEL32.dll | 1073184151 | ||
| KERNEL32.dll | 1073184198 | ||
| KERNEL32.dll | 1073271151 | ||
| KERNEL32.dll | 1073283132 | ||
| KERNEL32.dll | 1073328776 | ||
| KERNEL32.dll | 1073174376 | ||
| KERNEL32.dll | 1073174649 | ||
| KERNEL32.dll | 1073180315 | ||
| KERNEL32.dll | 1073249252 | ||
| KERNEL32.dll | 1073230288 | ||
| KERNEL32.dll | 1073284545 | ||
| KERNEL32.dll | 1073213425 | ||
| KERNEL32.dll | 1073347535 | ||
| KERNEL32.dll | 1073184091 | ||
| KERNEL32.dll | 1073381714 | ||
| KERNEL32.dll | 1073184053 | ||
| KERNEL32.dll | 1073381678 | ||
| KERNEL32.dll | 1073234169 | ||
| KERNEL32.dll | 1073350872 | ||
| KERNEL32.dll | 1073348659 | ||
| KERNEL32.dll | 1073180979 | ||
| KERNEL32.dll | 1073180381 | ||
| KERNEL32.dll | 1073174444 | ||
| KERNEL32.dll | 1073329555 | ||
| KERNEL32.dll | 1073180348 | ||
| KERNEL32.dll | 1073181132 | ||
| KERNEL32.dll | 1073290831 | ||
| KERNEL32.dll | 1073180721 | ||
| KERNEL32.dll | 1073205355 | ||
| KERNEL32.dll | 1073304190 | ||
| KERNEL32.dll | 1073336319 | ||
| KERNEL32.dll | 1073276312 | ||
| KERNEL32.dll | 1073170888 | ||
| KERNEL32.dll | 1073181601 | ||
| KERNEL32.dll | 1073264071 | ||
| KERNEL32.dll | 1073182629 | ||
| KERNEL32.dll | 1073267941 | ||
| KERNEL32.dll | 1073179184 | ||
| KERNEL32.dll | 1073182408 | ||
| KERNEL32.dll | 1073180424 | ||
| KERNEL32.dll | 1073271020 | ||
| KERNEL32.dll | 1073180064 | ||
| KERNEL32.dll | 1073290300 | ||
| KERNEL32.dll | 1073334144 | ||
| KERNEL32.dll | 1073345755 | ||
| KERNEL32.dll | 1073247098 | ||
| KERNEL32.dll | 1073180617 | ||
| KERNEL32.dll | 1073182907 | ||
| KERNEL32.dll | 1073182478 | ||
| KERNEL32.dll | 1073170604 | ||
| GDI32.dll | 59 | CreatePalette | |
| GDI32.dll | 13 | BitBlt | |
| GDI32.dll | 294 | GetSystemPaletteUse | |
| GDI32.dll | 379 | SelectPalette | |
| GDI32.dll | 293 | GetSystemPaletteEntries | |
| GDI32.dll | 34 | CreateCompatibleBitmap | |
| GDI32.dll | 231 | GetDIBits | |
| GDI32.dll | 225 | GetCurrentObject | |
| GDI32.dll | 273 | GetObjectA | |
| GDI32.dll | 278 | GetPaletteEntries | |
| GDI32.dll | 392 | SetDIBColorTable | |
| GDI32.dll | 274 | GetObjectType | |
| GDI32.dll | 40 | CreateDIBSection | |
| GDI32.dll | 436 | SwapBuffers | |
| GDI32.dll | 77 | DescribePixelFormat | |
| GDI32.dll | 432 | StretchBlt | |
| GDI32.dll | 155 | GdiFlush | |
| GDI32.dll | 35 | CreateCompatibleDC | |
| GDI32.dll | 378 | SelectObject | |
| GDI32.dll | 76 | DeleteObject | |
| GDI32.dll | 73 | DeleteDC | |
| GDI32.dll | 441 | UnrealizeObject | |
| GDI32.dll | 356 | RealizePalette | |
| GDI32.dll | 417 | SetSystemPaletteUse | |
| GDI32.dll | 289 | GetStockObject | |
| GDI32.dll | 232 | GetDeviceCaps | |
| GDI32.dll | 16 | ChoosePixelFormat | |
| GDI32.dll | 410 | SetPixelFormat | |
| GDI32.dll | 1072832933 | ||
| GDI32.dll | 1072833171 | ||
| GDI32.dll | 1072833736 | ||
| GDI32.dll | 1072836590 | ||
| GDI32.dll | 1072832725 | ||
| GDI32.dll | 1072835885 | ||
| GDI32.dll | 1072829497 | ||
| GDI32.dll | 1072842648 | ||
| GDI32.dll | 1072829581 | ||
| GDI32.dll | 1072832721 | ||
| GDI32.dll | 1072832713 | ||
| GDI32.dll | 1072844193 | ||
| GDI32.dll | 1072836946 | ||
| GDI32.dll | 1072855309 | ||
| GDI32.dll | 1072855145 | ||
| GDI32.dll | 1072833226 | ||
| GDI32.dll | 1072837821 | ||
| GDI32.dll | 1072833752 | ||
| GDI32.dll | 1072833790 | ||
| GDI32.dll | 1072834626 | ||
| GDI32.dll | 1072834618 | ||
| GDI32.dll | 1072834614 | ||
| GDI32.dll | 1072836596 | ||
| GDI32.dll | 1072833786 | ||
| GDI32.dll | 1072843027 | ||
| GDI32.dll | 1072830191 | ||
| GDI32.dll | 1072855093 | ||
| GDI32.dll | 1072855253 | ||
| USER32.dll | 584 | SetSysColors | |
| USER32.dll | 525 | SendDlgItemMessageA | |
| USER32.dll | 398 | IsWindow | |
| USER32.dll | 322 | GetSysColor | |
| USER32.dll | 212 | FillRect | |
| USER32.dll | 600 | SetWindowPos | |
| USER32.dll | 332 | GetUpdateRect | |
| USER32.dll | 88 | CreateWindowExA | |
| USER32.dll | 615 | ShowWindow | |
| USER32.dll | 513 | ReleaseDC | |
| USER32.dll | 253 | GetDC | |
| USER32.dll | 11 | BeginPaint | |
| USER32.dll | 187 | EndPaint | |
| USER32.dll | 404 | KillTimer | |
| USER32.dll | 591 | SetTimer | |
| USER32.dll | 142 | DestroyWindow | |
| USER32.dll | 413 | LoadIconA | |
| USER32.dll | 496 | RegisterClassA | |
| USER32.dll | 409 | LoadCursorA | |
| USER32.dll | 240 | GetClientRect | |
| USER32.dll | 213 | FindWindowA | |
| USER32.dll | 558 | SetForegroundWindow | |
| USER32.dll | 147 | DialogBoxParamA | |
| USER32.dll | 298 | GetMessageA | |
| USER32.dll | 639 | TranslateMessage | |
| USER32.dll | 149 | DispatchMessageA | |
| USER32.dll | 325 | GetSystemMetrics | |
| USER32.dll | 26 | ChangeDisplaySettingsA | |
| USER32.dll | 36 | CharNextA | |
| USER32.dll | 475 | PeekMessageA | |
| USER32.dll | 479 | PostQuitMessage | |
| USER32.dll | 309 | GetParent | |
| USER32.dll | 548 | SetCursor | |
| USER32.dll | 252 | GetCursorPos | |
| USER32.dll | 477 | PostMessageA | |
| USER32.dll | 132 | DefWindowProcA | |
| USER32.dll | 622 | SystemParametersInfoA | |
| USER32.dll | 530 | SendMessageA | |
| USER32.dll | 264 | GetForegroundWindow | |
| USER32.dll | 185 | EndDialog | |
| USER32.dll | 679 | wsprintfA | |
| USER32.dll | 258 | GetDlgItem | |
| USER32.dll | 53 | CheckRadioButton | |
| USER32.dll | 50 | CheckDlgButton | |
| USER32.dll | 426 | LoadStringA | |
| USER32.dll | 557 | SetFocus | |
| USER32.dll | 1073031831 | ||
| USER32.dll | 1073043484 | ||
| USER32.dll | 1073041049 | ||
| USER32.dll | 1073040454 | ||
| USER32.dll | 1073029494 | ||
| USER32.dll | 1073026411 | ||
| USER32.dll | 1073027261 | ||
| USER32.dll | 1073044581 | ||
| USER32.dll | 1073029272 | ||
| USER32.dll | 1073029264 | ||
| USER32.dll | 1073030301 | ||
| USER32.dll | 1073027115 | ||
| USER32.dll | 1073027196 | ||
| USER32.dll | 1073028013 | ||
| USER32.dll | 1073033358 | ||
| USER32.dll | 1073030351 | ||
| USER32.dll | 1073043949 | ||
| USER32.dll | 1073038178 | ||
| USER32.dll | 1073043971 | ||
| USER32.dll | 1073041337 | ||
| USER32.dll | 1073043724 | ||
| USER32.dll | 1073030331 | ||
| USER32.dll | 1073033173 | ||
| USER32.dll | 1073043249 | ||
| USER32.dll | 1073043293 | ||
| USER32.dll | 1073039155 | ||
| USER32.dll | 1073042154 | ||
| USER32.dll | 1073033845 | ||
| USER32.dll | 1073039678 | ||
| USER32.dll | 1073043457 | ||
| USER32.dll | 1073030335 | ||
| USER32.dll | 1073030257 | ||
| USER32.dll | 1073032586 | ||
| USER32.dll | 1073028846 | ||
| USER32.dll | 1073043196 | ||
| USER32.dll | 1073044417 | ||
| USER32.dll | 1073025641 | ||
| USER32.dll | 1073043498 | ||
| USER32.dll | 1073041897 | ||
| USER32.dll | 1073028009 | ||
| USER32.dll | 1073042821 | ||
| USER32.dll | 1073041136 | ||
| USER32.dll | 1073026956 | ||
| USER32.dll | 1073026925 | ||
| USER32.dll | 1073042816 | ||
| USER32.dll | 1073030277 | ||
| OPENGL32.dll | 255 | glRotated | |
| OPENGL32.dll | 17 | glClear | |
| OPENGL32.dll | 178 | glMaterialf | |
| OPENGL32.dll | 98 | glFlush | |
| OPENGL32.dll | 97 | glFinish | |
| OPENGL32.dll | 343 | glViewport | |
| OPENGL32.dll | 259 | glScissor | |
| OPENGL32.dll | 346 | wglCreateContext | |
| OPENGL32.dll | 357 | wglMakeCurrent | |
| OPENGL32.dll | 348 | wglDeleteContext | |
| OPENGL32.dll | 356 | wglGetProcAddress | |
| OPENGL32.dll | 125 | glGetString | |
| OPENGL32.dll | 261 | glShadeModel | |
| OPENGL32.dll | 75 | glDrawElements | |
| OPENGL32.dll | 11 | glBegin | |
| OPENGL32.dll | 191 | glNormal3fv | |
| OPENGL32.dll | 329 | glVertex3fv | |
| OPENGL32.dll | 82 | glEnd | |
| OPENGL32.dll | 196 | glNormalPointer | |
| OPENGL32.dll | 342 | glVertexPointer | |
| OPENGL32.dll | 81 | glEnableClientState | |
| OPENGL32.dll | 72 | glDisableClientState | |
| OPENGL32.dll | 182 | glMatrixMode | |
| OPENGL32.dll | 20 | glClearDepth | |
| OPENGL32.dll | 64 | glCullFace | |
| OPENGL32.dll | 159 | glLightfv | |
| OPENGL32.dll | 156 | glLightModeli | |
| OPENGL32.dll | 71 | glDisable | |
| OPENGL32.dll | 80 | glEnable | |
| OPENGL32.dll | 179 | glMaterialfv | |
| OPENGL32.dll | 165 | glLoadIdentity | |
| COMCTL32.dll | 17 | ||
| COMCTL32.dll | 1072436256 | ||
| GLU32.dll | 21 | gluLookAt | |
| GLU32.dll | 32 | gluPerspective |
StringTable 040904B0
| CompanyName | Microsoft Corporation |
| FileDescription | OpenGL 3D Flowerbox Screen Saver |
| FileVersion | 5.00.1679.1 |
| InternalName | ssflwbox |
| LegalCopyright | Copyright (C) Microsoft Corp. 1981-1997 |
| OriginalFilename | ssflwbox |
| ProductName | Microsoft(R) Windows NT(R) Operating System |
| ProductVersion | 5.00.1679.1 |
VS_FIXEDFILEINFO
| FileVersion | 5.0.1679.1 |
| ProductVersion | 5.0.1679.1 |
| StrucVersion | 0x10000 |
| FileFlagsMask | 0x3f |
| FileFlags | 0 |
| FileOS | 0x40004 |
| FileType | 1 |
| FileSubtype | 0 |
![]() |
| Please donate some bucks to keep this site up and running: | |
| Ko-fi | |
|---|---|
| Yandex.Money | |
| Thank you! | |
everything is OK
offset:( 0x )