78a444c1d65d53dcca0fd1f43a22b819c21de1a4defc4202016aac5f63fa07e1

Summary

Architecture IMAGE_FILE_MACHINE_AMD64
Subsystem IMAGE_SUBSYSTEM_WINDOWS_GUI
Compilation Date 1970-Jan-01 00:00:00
Detected languages Japanese - Japan
TLS Callbacks 2 callback(s) detected.
FileVersion 6.2.6707.771
InternalName CalendarEventMixerTray.exe
FileDescription Shows and manages calendar event mixer tray on the desktop
CompanyName Whitmore Peak Software Co.
LegalCopyright (c) Whitmore Peak Software Co.. All rights reserved.

Plugin Output

Suspicious PEiD Signature: XWD graphics format
HQR data file
Suspicious Strings found in the binary may indicate undesirable behavior: Looks for Qemu presence:
  • QeMU
Contains domain names:
  • golang.org
Info Cryptographic algorithms detected in the binary: Uses constants related to SHA256
Uses constants related to SHA512
Uses constants related to AES
Suspicious The PE is possibly packed. Unusual section name found: .xdata
Suspicious The PE contains functions most legitimate programs don't use. [!] The program may be hiding some of its imports:
  • GetProcAddress
  • LoadLibraryA
  • LoadLibraryExW
Functions which can be used for anti-debugging purposes:
  • SwitchToThread
Memory manipulation functions often used by packers:
  • VirtualAlloc
  • VirtualProtect
Info The PE is digitally signed. Signer: Calendar Event Mixer Tray
Issuer: Calendar Event Mixer Tray
Malicious VirusTotal score: 13/71 (Scanned on 2026-06-13 06:47:58) AVG: Win64:MalwareX-gen [Misc]
AhnLab-V3: Malware/Win.MalwareX-gen.R779336
Avast: Win64:MalwareX-gen [Misc]
Avira: TR/W64.Agent
Bkav: W32.Malware.738FDA95
Cynet: Malicious (score: 99)
ESET-NOD32: Win64/Agent.JUM trojan
F-Secure: Trojan.TR/W64.Agent
Kaspersky: VHO:Trojan.Win64.DLLhijack.gen
Malwarebytes: Trojan.MalPack
Microsoft: Trojan:Win32/Phonzy.A!ml
Rising: Trojan.DLLhijack!8.1B50 (TFE:5:8E0C2eaMorT)
Trapmine: malicious.high.ml.score

Hashes

MD5 d5f714e22ea01459e9862491ef118ff1
SHA1 7ada4a2e5a1abea6e817a239960600507e184dcc
SHA256 78a444c1d65d53dcca0fd1f43a22b819c21de1a4defc4202016aac5f63fa07e1
SHA3 61911410068a62a6c4352f8f3839c4e36dd86386f4cb2459658d619e7638be28
SSDeep 196608:bQGOqyZpvQn2HOmYY+YUANQIkLyPYPIdM:bhyZp4nmOs+tI0LyPY/
Imports Hash f604c1c3e882e6a725b213d7fdcb6bc5

DOS Header

e_magic MZ
e_cblp 0x90
e_cp 0x3
e_crlc 0
e_cparhdr 0x4
e_minalloc 0
e_maxalloc 0xffff
e_ss 0
e_sp 0xb8
e_csum 0
e_ip 0
e_cs 0
e_ovno 0
e_oemid 0
e_oeminfo 0
e_lfanew 0x80

PE Header

Signature PE
Machine IMAGE_FILE_MACHINE_AMD64
NumberofSections 12
TimeDateStamp 1970-Jan-01 00:00:00
PointerToSymbolTable 0
NumberOfSymbols 0
SizeOfOptionalHeader 0xf0
Characteristics IMAGE_FILE_DEBUG_STRIPPED
IMAGE_FILE_DLL
IMAGE_FILE_EXECUTABLE_IMAGE
IMAGE_FILE_LARGE_ADDRESS_AWARE
IMAGE_FILE_LINE_NUMS_STRIPPED
IMAGE_FILE_LOCAL_SYMS_STRIPPED

Image Optional Header

Magic PE32+
LinkerVersion 2.0
SizeOfCode 0xe1000
SizeOfInitializedData 0x683600
SizeOfUninitializedData 0x204ae00
AddressOfEntryPoint 0x00000000000012EF (Section: .text)
BaseOfCode 0x1000
ImageBase 0x393140000
SectionAlignment 0x1000
FileAlignment 0x200
OperatingSystemVersion 6.1
ImageVersion 0.0
SubsystemVersion 6.1
Win32VersionValue 0
SizeOfImage 0x27b6000
SizeOfHeaders 0x400
Checksum 0x76d513
Subsystem IMAGE_SUBSYSTEM_WINDOWS_GUI
DllCharacteristics IMAGE_DLLCHARACTERISTICS_DYNAMIC_BASE
IMAGE_DLLCHARACTERISTICS_HIGH_ENTROPY_VA
IMAGE_DLLCHARACTERISTICS_NX_COMPAT
IMAGE_DLLCHARACTERISTICS_TERMINAL_SERVER_AWARE
SizeofStackReserve 0x200000
SizeofStackCommit 0x1000
SizeofHeapReserve 0x100000
SizeofHeapCommit 0x1000
LoaderFlags 0
NumberOfRvaAndSizes 16

.text

MD5 f49345dafc41257d5005d753481c0bf5
SHA1 612341f575b04f1a1f564017675196583c564726
SHA256 c460d02bfd74f6f422bf331667aca53c956afc93af8b0341b9527a56607250d2
SHA3 7bce6ba8cf62cbd221c8bd05c407100f8ad3a379f53125e69323d19eb9753d6b
VirtualSize 0xe0e30
VirtualAddress 0x1000
SizeOfRawData 0xe1000
PointerToRawData 0x400
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_CODE
IMAGE_SCN_MEM_EXECUTE
IMAGE_SCN_MEM_READ
Entropy 6.30567

.data

MD5 ab1b2d4f67d597917a8255828b29a8b4
SHA1 be42741ab73441b0af1663f8e0e8622620a0c933
SHA256 54a2b12093e18ea53d2cbdf86b442a23ef19ebcd37c33580f29d7bbcfc382c7b
SHA3 36296d3f2a0ed2666874019b14139e5bef97ef088358d461ba28dea57d5e1c6c
VirtualSize 0x555c50
VirtualAddress 0xe2000
SizeOfRawData 0x555e00
PointerToRawData 0xe1400
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
Entropy 7.9942

.rdata

MD5 094c2055fd77b47127e355b2dce16492
SHA1 2d4ebe528665f696528031cf788c9fcb54f8de19
SHA256 44555c5684d39e2108feabda2ec51b9bf053d2879f62474c363cb5ab4c515354
SHA3 eab3ce9bb528125295da65055684b339d51dda928c967a6c966dfdc5f1c79cac
VirtualSize 0x111600
VirtualAddress 0x638000
SizeOfRawData 0x111600
PointerToRawData 0x637200
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 5.55973

.eh_fram

MD5 bf619eac0cdf3f68d496ea9344137e8b
SHA1 5c3eb80066420002bc3dcc7ca4ab6efad7ed4ae5
SHA256 076a27c79e5ace2a3d47f9dd2e83e4ff6ea8872b3c2218f66c92b89b55f36560
SHA3 622de1e1568ddef36c4b89b706b05201c13481c3575d0fc804ff8224787fcb59
VirtualSize 0x4
VirtualAddress 0x74a000
SizeOfRawData 0x200
PointerToRawData 0x748800
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
Entropy 0

.pdata

MD5 340be52c3a29a29a3e118d8ec5560931
SHA1 342de45409dc25c74539425e13ad7d83042c74a2
SHA256 5e3c7a2ce8b348eb83b35c539030a275eb3239349ba5c00ff1c787ece6b0a65b
SHA3 03c4c8e0306517bbb90baf39bdc805a77b2b8c1f237a1389398f3f00873386a6
VirtualSize 0x6240
VirtualAddress 0x74b000
SizeOfRawData 0x6400
PointerToRawData 0x748a00
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 5.3352

.xdata

MD5 82e958f1db33d67d1ef887b4d7a330e6
SHA1 862665290983925cebb6f5b78083b1b51762771c
SHA256 5fa5aefc60599ebf274a7bb655072eae93aa36fd2be30bb4914f621f8dcc8291
SHA3 75c855af66e102f83a5714c93a2c93895c14a173cbf43b649e276426e6cc1158
VirtualSize 0x364
VirtualAddress 0x752000
SizeOfRawData 0x400
PointerToRawData 0x74ee00
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 3.51521

.bss

MD5 d41d8cd98f00b204e9800998ecf8427e
SHA1 da39a3ee5e6b4b0d3255bfef95601890afd80709
SHA256 e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA3 a7ffc6f8bf1ed76651c14756a061d662f580ff4de43b49fa82d80a4b80f8434a
VirtualSize 0x204add0
VirtualAddress 0x753000
SizeOfRawData 0
PointerToRawData 0
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_UNINITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE

.edata

MD5 47af21b65c0365226e5f887643c494ec
SHA1 30b766a22eb945b967f4c12798e59dba72b58bba
SHA256 9830913cd29d96d658f94183970d0c39497da62e956efb26279927917b511334
SHA3 759e97ffe9178cbe3ae81a193204df009c8f759ab8b268049ef4c57b994c1ece
VirtualSize 0xf6
VirtualAddress 0x279e000
SizeOfRawData 0x200
PointerToRawData 0x74f200
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 2.86088

.idata

MD5 e8c8212e155e927146607b05ebb1bafa
SHA1 a450729648113d0469c6a654418c8933f9326913
SHA256 3717117def8000236b9a337bfca3398d6e20bb9a8f9ffc6dbcc6c421f97b9585
SHA3 8fc87ab51716c268e227176506112f7ca033a4b9bf1364452be210813b1f5f6e
VirtualSize 0xd48
VirtualAddress 0x279f000
SizeOfRawData 0xe00
PointerToRawData 0x74f400
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 4.61219

.tls

MD5 bf619eac0cdf3f68d496ea9344137e8b
SHA1 5c3eb80066420002bc3dcc7ca4ab6efad7ed4ae5
SHA256 076a27c79e5ace2a3d47f9dd2e83e4ff6ea8872b3c2218f66c92b89b55f36560
SHA3 622de1e1568ddef36c4b89b706b05201c13481c3575d0fc804ff8224787fcb59
VirtualSize 0x10
VirtualAddress 0x27a0000
SizeOfRawData 0x200
PointerToRawData 0x750200
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
Entropy 0

.reloc

MD5 557e9b44cd2ddf71bc87f15b87aff079
SHA1 1008563d8e707a79e8b738deb3a092fb93a5f5dd
SHA256 82f7b3e449cb9a226c3fb41968b75e4162b91a06c1630901f704cdcb9a716d1d
SHA3 f209cd454234e3462a430de6bc0917dd5a35318555a3aad5db6a8f062305721d
VirtualSize 0x4ac0
VirtualAddress 0x27a1000
SizeOfRawData 0x4c00
PointerToRawData 0x750400
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_DISCARDABLE
IMAGE_SCN_MEM_READ
Entropy 5.42393

.rsrc

MD5 472e79ef555c9d524f10b557e8b6ea28
SHA1 7172f81a76cde56d14519d3846985c1fb0ca836a
SHA256 e956cd3337fca86b1916b213bee3b7310e774bf6273b84b1e22942a020da4440
SHA3 b9401d0324e43e8059b5a20935e6d40adb61d3d80eb60f4bd608cb4912e0329b
VirtualSize 0xf92b
VirtualAddress 0x27a6000
SizeOfRawData 0xfa00
PointerToRawData 0x755000
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 7.86494

Imports

KERNEL32.dll AddVectoredContinueHandler
AddVectoredExceptionHandler
CloseHandle
CreateEventA
CreateIoCompletionPort
CreateThread
CreateWaitableTimerExW
DeleteCriticalSection
DisableThreadLibraryCalls
DuplicateHandle
EnterCriticalSection
ExitProcess
FreeEnvironmentStringsW
FreeLibrary
GetConsoleMode
GetCurrentThreadId
GetEnvironmentStringsW
GetErrorMode
GetLastError
GetModuleHandleA
GetModuleHandleW
GetProcAddress
GetProcessAffinityMask
GetQueuedCompletionStatusEx
GetStdHandle
GetSystemDirectoryA
GetSystemInfo
GetThreadContext
InitializeCriticalSection
LeaveCriticalSection
LoadLibraryA
LoadLibraryExW
PostQueuedCompletionStatus
QueryPerformanceCounter
RaiseFailFastException
ResumeThread
RtlLookupFunctionEntry
RtlVirtualUnwind
SetConsoleCtrlHandler
SetErrorMode
SetEvent
SetProcessPriorityBoost
SetThreadContext
SetWaitableTimer
Sleep
SuspendThread
SwitchToThread
TlsAlloc
TlsGetValue
VirtualAlloc
VirtualFree
VirtualProtect
VirtualQuery
WaitForMultipleObjects
WaitForSingleObject
WerGetFlags
WerSetFlags
WriteConsoleW
WriteFile
api-ms-win-crt-heap-l1-1-0.dll calloc
free
malloc
api-ms-win-crt-private-l1-1-0.dll memcpy
api-ms-win-crt-runtime-l1-1-0.dll _execute_onexit_table
_exit
_initialize_onexit_table
_initterm
_initterm_e
_register_onexit_function
abort
api-ms-win-crt-stdio-l1-1-0.dll __acrt_iob_func
__stdio_common_vfprintf
fwrite
api-ms-win-crt-string-l1-1-0.dll _stricmp
strcmp
strlen
strncmp

Delayed Imports

curl_easy_cleanup

Ordinal 1
Address 0xe01e0

curl_easy_duphandle

Ordinal 2
Address 0xe0210

curl_easy_init

Ordinal 3
Address 0xe00b0

curl_easy_perform

Ordinal 4
Address 0xe0190

curl_easy_setopt

Ordinal 5
Address 0xe0120

curl_easy_strerror

Ordinal 6
Address 0xe0240

gup_module_attach

Ordinal 7
Address 0xdfca0

1

Type RT_ICON
Language UNKNOWN
Codepage UNKNOWN
Size 0x90f4
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 7.98118
Detected Filetype PNG graphic file
MD5 d0555a78ec2fcfd58ec7ea396144aad7
SHA1 713413ec0333b9ff1d18b7737595a305078ebfc8
SHA256 5867a39d1747a533122756095d1629e9b00f1bbcd8b5d192681136780ae2f1d3
SHA3 81aa640da56cfc841c86d7b18753ced41de9b6ce34a4ff8e041f8ee8fe1fb12a

2

Type RT_ICON
Language UNKNOWN
Codepage UNKNOWN
Size 0x2f51
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 7.97366
Detected Filetype PNG graphic file
MD5 ba8db0513cf5380007115b058c42d748
SHA1 2c6b06a9fd48499748406a13b1f95e428a65043d
SHA256 508eff43cd992b51a551729fd9fed790d74fd7a20dfab948337fc435426772f2
SHA3 729fb2590186fa6961a1f2785e14b06ad38ce6adf5a91fa6ffc15dd9cdb9b3b4

3

Type RT_ICON
Language UNKNOWN
Codepage UNKNOWN
Size 0x104a
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 7.93511
Detected Filetype PNG graphic file
MD5 91a0e0c479aa6d7d0cdfab58ee2cd29a
SHA1 811620767a55fe9176410aa0f0baff4d74c4331b
SHA256 7e807cf8958d65e4b2c898e2509884566d2ed4aebfb3cde9905fc8cc830c3f1b
SHA3 6c5cbf7c88eafa8082c629fa533c69730865a59693305b9fd1ffff506c02b071

4

Type RT_ICON
Language UNKNOWN
Codepage UNKNOWN
Size 0xacf
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 7.91067
Detected Filetype PNG graphic file
MD5 578c9ab463815fdc4426cd9f79a34033
SHA1 223a50414657e9d6acc4c1e2236287e4efeb43d1
SHA256 ba7ad2521ac11135786e979347f7ce3fe088708d8f384f838858738cb84788fe
SHA3 6d1f3ec3bef7089b226dc0acf58dd56fb161c1f267a9b31eef47d71d11ea7101

5

Type RT_ICON
Language UNKNOWN
Codepage UNKNOWN
Size 0x5f4
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 7.82258
Detected Filetype PNG graphic file
MD5 1557d6068e14dfbd303b0a53270efe50
SHA1 d4d029f4165ad25dada4a26339196d7cd16f3864
SHA256 73d167daa7b7cf4e95f5470ebd01e22cac7421d1e0f74fa057d9449221f6cfc4
SHA3 573b32fac90e7faa5ade1a734056d30ad10c9fa028963b036eb282ae31816f5a

6

Type RT_ICON
Language UNKNOWN
Codepage UNKNOWN
Size 0x25d
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 7.5036
Detected Filetype PNG graphic file
MD5 cd185c880128241571748552956c2e25
SHA1 bdcb2c6de62950139efe3fba3faf3c99b755ae94
SHA256 b985c64d9e93c9be6c968336fc1ac03a5ea0bf57a160e2ae6cad943d8863fed3
SHA3 f19dde9cc76d4ac8a843f1cfbf73d8959e9794f5405da284d6ef3ec75657fd28

63

Type RT_STRING
Language Japanese - Japan
Codepage UNKNOWN
Size 0x18c
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.22536
MD5 c052488106fbeed3a8b222504aa19ad4
SHA1 71135e0cb4d10e4ab65a51b7ba2403689587fa50
SHA256 3cb7036f1f0f75953071e80843566c713346dd4f5dbe85e202c77cf96f14fdf2
SHA3 8ae121d4f488ae463461e064be75cc9cd7b75ec21008b9b060511c5f69e376a4

69

Type RT_STRING
Language Japanese - Japan
Codepage UNKNOWN
Size 0x88
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.86304
MD5 2b092243518bf5029633fc0477f196a2
SHA1 7c0621b2e91216294bd0e58d73ab0b31cab0cd88
SHA256 d0bfe9ba19684dfdfce066d92468de76bc0174c1471b90bda97532bd0e26a4fb
SHA3 8fea11da637507d6add24710a5b8abbd793cf9000611fd1272392bbff7ea78ba

70

Type RT_STRING
Language Japanese - Japan
Codepage UNKNOWN
Size 0x54
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.35083
MD5 4a25bfcb86716a87e83434ac238a7d2f
SHA1 8028d7b0984acc0c5b1dca10dae8f2d771e846a3
SHA256 a98865db3c11cd995f09694cf4ca958b91c1b9e35ae1738ff9713e44f4029104
SHA3 7db87149ac19a498242bac77a6372929b6841cd2c242e9700beb760d1d9a4a3a

126

Type RT_STRING
Language Japanese - Japan
Codepage UNKNOWN
Size 0x18c
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.0208
MD5 8576e4b2a99e4472be854905dee50341
SHA1 cc22a02cca86870a2aed52286aa259675cf228ba
SHA256 2ffca5130815b7e26f63e2283a232587ef16fec0bfc2be6a368e13d5e26f2ee1
SHA3 8fa4b73bbb438eaed640b5094e3484723f3da0d215ef7e97a2d4007eb0cbcc40

188

Type RT_STRING
Language Japanese - Japan
Codepage UNKNOWN
Size 0xb0
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.95971
MD5 27855fd885fc8662047c1d6273440a07
SHA1 99533a33a8c7f1bf7efbfa97c37a79f86e75dfc2
SHA256 5cf33d7f3ac06fd11dafa1fff5036c072bfb25a8f8257bf6acc94855c1ece33a
SHA3 4e659bd661d89b83b598a1589b0c82ecf4059fff8ab27fadadcc3e53d18d1bb6

251

Type RT_STRING
Language Japanese - Japan
Codepage UNKNOWN
Size 0x158
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.12431
MD5 787611f036a956f9d73ee542b3e12a16
SHA1 3817e2fcc5e9b25f8fd2225112361149b68efa17
SHA256 c05df62a34a7cff043e43067e6fd00ae64e59c1eb129875ac250daad327f4dfc
SHA3 a59aec0b0a32d0396f81192b3a572df927b6fef2d2f6a06a1ea1e2ee930fad24

313

Type RT_STRING
Language Japanese - Japan
Codepage UNKNOWN
Size 0xe8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.14602
MD5 92a11b616bdd34bd621f5f5333a08e1e
SHA1 670ecc6bbfb73856750b78919669641a9ed46ea1
SHA256 f387736287c01616631d5a3517f7c6d474ec895d47cad81b89ccc85be144722e
SHA3 6ebdc2ee962f78ab76b9ef3f27ff82687c3e7a88095ada5436d97c490e7c3f6b

376

Type RT_STRING
Language Japanese - Japan
Codepage UNKNOWN
Size 0xf8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.00878
MD5 26863bc84cc941f3b6f7c3fbd82fcc7a
SHA1 7463030ca7e1d15db14264a490d7b9377693c993
SHA256 3cf704a74a8637ccdea48fefbe1211f2bdfb46f1b9bdca008a9a684d44e8d0e6
SHA3 554565939e656805b8a58bf9eb84300ae365a9079c19235ade1e04cc07bc15f1

1 (#2)

Type RT_GROUP_ICON
Language UNKNOWN
Codepage UNKNOWN
Size 0x5a
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.77149
Detected Filetype Icon file
MD5 b5c8f7d2aeadfcf1d264b6a92ee64a85
SHA1 504a5e95ebc2d1b0bb2372f3f5828408d6b27214
SHA256 5014e932bfc04e587e247c3b59600184cc15841dd88250bee04a55a775fffce8
SHA3 1e00ec0325279a7f23e353e3c23cea6be90c3a95e6ae05f3d38a02e1794f241f

1 (#3)

Type RT_VERSION
Language Japanese - Japan
Codepage UNKNOWN
Size 0x2f8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.44723
MD5 257d2d102530446c06646686fa79967b
SHA1 f7ec60d5bac0ceecc62ec2d308c5834b41d56826
SHA256 745e861c7e8211317851ab730bf2fbc3867011f44e28e3ee339b90dcfe199c68
SHA3 813ea8fa4b71cd0ee666b935e1d8d4203aef19760de6433642bfc656518b063c

1 (#4)

Type RT_MANIFEST
Language Japanese - Japan
Codepage UNKNOWN
Size 0x68b
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 5.2109
MD5 a5ae0d69d666bf497d05610f6bd099de
SHA1 0df5e17108b22ea8e0b9ac0d71ab012c41ed4c36
SHA256 b16a7c07c29c32eec3c03d1e64c5eddb0988da77ed0e3dd6dc4531cce96cfc82
SHA3 cc295ac979d917b6ca71d990abd343b19a6fbe12ddc0fc3f7481b7dca76ffc2c

String Table contents

Calendar Event Mixer Tray
Shows and manages calendar event mixer tray on the desktop
Whitmore Peak Software Co.
Version 6.2.6707.771
(c) Whitmore Peak Software Co.. All rights reserved.
Configuring...
Hyper-V: not enabled
Select All
Options
Help
Close
Log file rotated.
The system cannot find the file specified.
The specified path is invalid.
Test run: 128 passed, 0 failed.
The process cannot access the file because it is being used by another process.
In Progress
Item 4947: ready.
Item 3197: ready.
Completed
Item 3068: ready.
Item 6011: updated.
Item 883: updated.
Item 6155: updated.
Checking for updates...
Item 5848: updated.
Item 3229: updated.
Item 9701: updated.
Item 7295: updated.
Network unavailable.
Latency: 24 ms
Proxy authentication required.
Disconnected
SSL handshake completed.
License valid until December 31, 2026.
Microsoft account connected.
Subscription renewed.
Sign in to continue.

Version Info

Signature 0xfeef04bd
StructVersion 0x10000
FileVersion 6.2.6707.771
ProductVersion 6.2.6707.771
FileFlags (EMPTY)
FileOs VOS_DOS_WINDOWS32
VOS_NT_WINDOWS32
VOS__WINDOWS32
FileType VFT_DLL
Language Japanese - Japan
FileVersion (#2) 6.2.6707.771
InternalName CalendarEventMixerTray.exe
FileDescription Shows and manages calendar event mixer tray on the desktop
CompanyName Whitmore Peak Software Co.
LegalCopyright (c) Whitmore Peak Software Co.. All rights reserved.
Resource LangID Japanese - Japan

TLS Callbacks

StartAddressOfRawData 0x3958e0000
EndAddressOfRawData 0x3958e0008
AddressOfIndex 0x3958ddd30
AddressOfCallbacks 0x3938895d8
SizeOfZeroFill 0
Characteristics IMAGE_SCN_TYPE_REG
Callbacks 0x0000000393220900
0x00000003932209B9

Load Configuration

RICH Header

Errors

[*] Warning: Section .bss has a size of 0!
Leave a comment

No comments yet.