| Architecture |
IMAGE_FILE_MACHINE_I386
|
|---|---|
| Subsystem |
IMAGE_SUBSYSTEM_WINDOWS_GUI
|
| Compilation Date | 1992-Jun-19 22:22:17 |
| Detected languages |
Dutch - Netherlands
English - United States German - Germany |
| CompanyName | PK-ARTS Ltd. |
| FileDescription | coded by indie machine |
| FileVersion | 1.0.0.0 |
| InternalName | |
| LegalCopyright | |
| LegalTrademarks | |
| OriginalFilename | |
| ProductName | |
| ProductVersion | 1.0.0.0 |
| Comments |
| Info | Interesting strings found in the binary: |
Contains domain names:
|
| Info | Cryptographic algorithms detected in the binary: | Uses constants related to CRC32 |
| Suspicious | The PE is possibly packed. | Unusual section name found: .itext |
| Malicious | The PE contains functions mostly used by malware. |
[!] The program may be hiding some of its imports:
|
| Info | The PE's resources present abnormal characteristics. | Resource TLOGOFORM is possibly compressed or encrypted. |
| Suspicious | The file contains overlay data. |
5405180 bytes of data starting at offset 0x1eaa00.
The overlay data has an entropy of 7.99996 and is possibly compressed or encrypted. |
| Safe | VirusTotal score: 0/71 (Scanned on 2026-03-15 17:56:29) | All the AVs think this file is safe. |
| e_magic | MZ |
|---|---|
| e_cblp | 0x50 |
| e_cp | 0x2 |
| e_crlc | 0 |
| e_cparhdr | 0x4 |
| e_minalloc | 0xf |
| e_maxalloc | 0xffff |
| e_ss | 0 |
| e_sp | 0xb8 |
| e_csum | 0 |
| e_ip | 0 |
| e_cs | 0 |
| e_ovno | 0x1a |
| e_oemid | 0 |
| e_oeminfo | 0 |
| e_lfanew | 0x100 |
| Signature | PE |
|---|---|
| Machine |
IMAGE_FILE_MACHINE_I386
|
| NumberofSections | 9 |
| TimeDateStamp | 1992-Jun-19 22:22:17 |
| PointerToSymbolTable | 0 |
| NumberOfSymbols | 0 |
| SizeOfOptionalHeader | 0xe0 |
| Characteristics |
IMAGE_FILE_32BIT_MACHINE
IMAGE_FILE_BYTES_REVERSED_HI
IMAGE_FILE_BYTES_REVERSED_LO
IMAGE_FILE_EXECUTABLE_IMAGE
IMAGE_FILE_LINE_NUMS_STRIPPED
IMAGE_FILE_LOCAL_SYMS_STRIPPED
|
| Magic | PE32 |
|---|---|
| LinkerVersion | 2.0 |
| SizeOfCode | 0x187400 |
| SizeOfInitializedData | 0x63200 |
| SizeOfUninitializedData | 0 |
| AddressOfEntryPoint | 0x00188750 (Section: .itext) |
| BaseOfCode | 0x1000 |
| BaseOfData | 0x189000 |
| ImageBase | 0x400000 |
| SectionAlignment | 0x1000 |
| FileAlignment | 0x200 |
| OperatingSystemVersion | 4.0 |
| ImageVersion | 0.0 |
| SubsystemVersion | 4.0 |
| Win32VersionValue | 0 |
| SizeOfImage | 0x36b000 |
| SizeOfHeaders | 0x400 |
| Checksum | 0 |
| Subsystem |
IMAGE_SUBSYSTEM_WINDOWS_GUI
|
| SizeofStackReserve | 0x100000 |
| SizeofStackCommit | 0x4000 |
| SizeofHeapReserve | 0x100000 |
| SizeofHeapCommit | 0x1000 |
| LoaderFlags | 0 |
| NumberOfRvaAndSizes | 16 |
| oleaut32.dll |
SysFreeString
SysReAllocStringLen SysAllocStringLen |
|---|---|
| advapi32.dll |
RegQueryValueExA
RegOpenKeyExA RegCloseKey |
| user32.dll |
GetKeyboardType
DestroyWindow LoadStringA MessageBoxA CharNextA |
| kernel32.dll |
GetACP
Sleep VirtualFree VirtualAlloc GetTickCount QueryPerformanceCounter GetCurrentThreadId InterlockedDecrement InterlockedIncrement VirtualQuery WideCharToMultiByte SetCurrentDirectoryA MultiByteToWideChar lstrlenA lstrcpynA LoadLibraryExA GetThreadLocale GetStartupInfoA GetProcAddress GetModuleHandleA GetModuleFileNameA GetLocaleInfoA GetLastError GetCurrentDirectoryA GetCommandLineA FreeLibrary FindFirstFileA FindClose ExitProcess ExitThread CreateThread CompareStringA WriteFile UnhandledExceptionFilter SetFilePointer SetEndOfFile RtlUnwind ReadFile RaiseException GetStdHandle GetFileSize GetFileType CreateFileA CloseHandle |
| kernel32.dll (#2) |
GetACP
Sleep VirtualFree VirtualAlloc GetTickCount QueryPerformanceCounter GetCurrentThreadId InterlockedDecrement InterlockedIncrement VirtualQuery WideCharToMultiByte SetCurrentDirectoryA MultiByteToWideChar lstrlenA lstrcpynA LoadLibraryExA GetThreadLocale GetStartupInfoA GetProcAddress GetModuleHandleA GetModuleFileNameA GetLocaleInfoA GetLastError GetCurrentDirectoryA GetCommandLineA FreeLibrary FindFirstFileA FindClose ExitProcess ExitThread CreateThread CompareStringA WriteFile UnhandledExceptionFilter SetFilePointer SetEndOfFile RtlUnwind ReadFile RaiseException GetStdHandle GetFileSize GetFileType CreateFileA CloseHandle |
| user32.dll (#2) |
GetKeyboardType
DestroyWindow LoadStringA MessageBoxA CharNextA |
| msimg32.dll |
GradientFill
|
| gdi32.dll |
UnrealizeObject
StretchBlt StartPage StartDocA SetWindowOrgEx SetWindowExtEx SetWinMetaFileBits SetViewportOrgEx SetViewportExtEx SetTextColor SetStretchBltMode SetROP2 SetPixel SetMapMode SetEnhMetaFileBits SetDIBColorTable SetBrushOrgEx SetBkMode SetBkColor SetAbortProc SelectPalette SelectObject SelectClipRgn SaveDC RestoreDC Rectangle RectVisible RealizePalette Polyline Polygon PolyPolyline PlayEnhMetaFile PatBlt MoveToEx MaskBlt LineTo LPtoDP IntersectClipRect GetWindowOrgEx GetWinMetaFileBits GetTextMetricsA GetTextExtentPointA GetTextExtentPoint32A GetSystemPaletteEntries GetStockObject GetRgnBox GetPixel GetPaletteEntries GetObjectType GetObjectA GetEnhMetaFilePaletteEntries GetEnhMetaFileHeader GetEnhMetaFileDescriptionA GetEnhMetaFileBits GetDeviceCaps GetDIBits GetDIBColorTable GetDCOrgEx GetCurrentPositionEx GetClipBox GetCharABCWidthsA GetBrushOrgEx GetBitmapBits GdiFlush ExtTextOutA ExtCreatePen ExcludeClipRect EndPage EndDoc Ellipse DeleteObject DeleteEnhMetaFile DeleteDC CreateSolidBrush CreateRectRgnIndirect CreateRectRgn CreatePenIndirect CreatePalette CreateICA CreateHalftonePalette CreateFontIndirectA CreateEnhMetaFileA CreateDIBitmap CreateDIBSection CreateDCA CreateCompatibleDC CreateCompatibleBitmap CreateBrushIndirect CreateBitmap CopyEnhMetaFileA CombineRgn CloseEnhMetaFile BitBlt |
| version.dll |
VerQueryValueA
GetFileVersionInfoSizeA GetFileVersionInfoA |
| mpr.dll |
WNetGetConnectionA
|
| kernel32.dll (#3) |
GetACP
Sleep VirtualFree VirtualAlloc GetTickCount QueryPerformanceCounter GetCurrentThreadId InterlockedDecrement InterlockedIncrement VirtualQuery WideCharToMultiByte SetCurrentDirectoryA MultiByteToWideChar lstrlenA lstrcpynA LoadLibraryExA GetThreadLocale GetStartupInfoA GetProcAddress GetModuleHandleA GetModuleFileNameA GetLocaleInfoA GetLastError GetCurrentDirectoryA GetCommandLineA FreeLibrary FindFirstFileA FindClose ExitProcess ExitThread CreateThread CompareStringA WriteFile UnhandledExceptionFilter SetFilePointer SetEndOfFile RtlUnwind ReadFile RaiseException GetStdHandle GetFileSize GetFileType CreateFileA CloseHandle |
| advapi32.dll (#2) |
RegQueryValueExA
RegOpenKeyExA RegCloseKey |
| oleaut32.dll (#2) |
SysFreeString
SysReAllocStringLen SysAllocStringLen |
| ole32.dll |
CreateStreamOnHGlobal
IsAccelerator OleDraw OleSetMenuDescriptor CoTaskMemFree ProgIDFromCLSID StringFromCLSID CoCreateInstance CoGetClassObject CoUninitialize CoInitializeEx CoInitialize IsEqualGUID |
| kernel32.dll (#4) |
GetACP
Sleep VirtualFree VirtualAlloc GetTickCount QueryPerformanceCounter GetCurrentThreadId InterlockedDecrement InterlockedIncrement VirtualQuery WideCharToMultiByte SetCurrentDirectoryA MultiByteToWideChar lstrlenA lstrcpynA LoadLibraryExA GetThreadLocale GetStartupInfoA GetProcAddress GetModuleHandleA GetModuleFileNameA GetLocaleInfoA GetLastError GetCurrentDirectoryA GetCommandLineA FreeLibrary FindFirstFileA FindClose ExitProcess ExitThread CreateThread CompareStringA WriteFile UnhandledExceptionFilter SetFilePointer SetEndOfFile RtlUnwind ReadFile RaiseException GetStdHandle GetFileSize GetFileType CreateFileA CloseHandle |
| oleaut32.dll (#3) |
SysFreeString
SysReAllocStringLen SysAllocStringLen |
| comctl32.dll |
_TrackMouseEvent
ImageList_SetIconSize ImageList_GetIconSize ImageList_Write ImageList_Read ImageList_GetDragImage ImageList_DragShowNolock ImageList_DragMove ImageList_DragLeave ImageList_DragEnter ImageList_EndDrag ImageList_BeginDrag ImageList_Remove ImageList_DrawEx ImageList_Replace ImageList_Draw ImageList_GetBkColor ImageList_SetBkColor ImageList_Add ImageList_GetImageCount ImageList_Destroy ImageList_Create InitCommonControls |
| shell32.dll |
ShellExecuteA
|
| shell32.dll (#2) |
ShellExecuteA
|
| winspool.drv |
OpenPrinterA
EnumPrintersA DocumentPropertiesA ClosePrinter |
| comdlg32.dll |
PrintDlgA
ChooseColorA GetSaveFileNameA GetOpenFileNameA |
| winmm.dll |
timeGetTime
sndPlaySoundA mciSendStringA mciSendCommandA mciGetErrorStringA joyGetPosEx joyGetPos joyGetDevCapsA |
| d3d8.dll |
Direct3DCreate8
|
| ddraw.dll |
DirectDrawCreate
|
| kernel32.dll (#5) |
GetACP
Sleep VirtualFree VirtualAlloc GetTickCount QueryPerformanceCounter GetCurrentThreadId InterlockedDecrement InterlockedIncrement VirtualQuery WideCharToMultiByte SetCurrentDirectoryA MultiByteToWideChar lstrlenA lstrcpynA LoadLibraryExA GetThreadLocale GetStartupInfoA GetProcAddress GetModuleHandleA GetModuleFileNameA GetLocaleInfoA GetLastError GetCurrentDirectoryA GetCommandLineA FreeLibrary FindFirstFileA FindClose ExitProcess ExitThread CreateThread CompareStringA WriteFile UnhandledExceptionFilter SetFilePointer SetEndOfFile RtlUnwind ReadFile RaiseException GetStdHandle GetFileSize GetFileType CreateFileA CloseHandle |
| wsock32.dll |
WSACleanup
WSAStartup gethostname gethostbyname |
| Improper JPEG sampling factors. |
| Bogus JPEG tables field. |
| Fractional JPEG scanline unsupported. |
| Warning |
| OLE error %.8x |
| Method '%s' not supported by automation object |
| Variant does not reference an automation object |
| Dispatch methods do not support more than 64 parameters |
| DCOM not installed |
| OLE control activation failed |
| Could not obtain OLE control window handle |
| License information for %s is invalid |
| License information for %s not found. You cannot use this control in design mode |
| Unable to retrieve a pointer to a running object registered with OLE for %s/%s |
| The compression scheme is |
| Conversion between indexed and non-indexed pixel formats is not supported. |
| Color conversion failed. Could not find a proper method. |
| Color depth is invalid. Bits per sample must be 1, 2, 4, 8 or 16. |
| Sample count per pixel does not correspond to the given color scheme. |
| Subsampling value is invalid. Allowed are 1, 2 and 4. |
| Vertical subsampling value must be <= horizontal subsampling value. |
| Preparing... |
| Loading data... |
| Upsampling... |
| Transfering... |
| LZ77 decompression error. |
| JPEG decompression error. Unexpected end of input. |
| Improper JPEG strip/tile size. |
| Improper JPEG component count. |
| Improper JPEG data precision. |
| Portable bitmap images |
| Autodesk images |
| Kodak Photo-CD images |
| CompuServe images |
| Dr. Halo images |
| Paintshop Pro images |
| Portable network graphic images |
| Cannot load image. Invalid or unexpected %s image format. |
| Invalid color format in %s file. |
| Stream read error in %s file. |
| Cannot load image. %s not supported for %s files. |
| Cannot load image. CRC error found in %s file. |
| Cannot load image. Compression error found in %s file. |
| Cannot load image. Extra compressed data found in %s file. |
| Cannot load image. Palette in %s file is invalid. |
| Cannot load PNG image. Unexpected but critical chunk detected. |
| Truevision images |
| Tagged image file format images |
| Macintosh TIFF images |
| PC TIF images |
| GFI fax images |
| SGI images |
| SGI true color images |
| ZSoft Paintbrush images |
| Word 5.x screen capture images |
| Alias/Wavefront images |
| SGI true color images with alpha |
| SGI black/white images |
| Photoshop images |
| Portable map images |
| Portable pixel map images |
| Portable gray map images |
| unknown compression method |
| invalid window size |
| incorrect header check |
| need dictionary |
| Attempt to register %s twice. |
| Windows bitmaps |
| Run length encoded Windows bitmaps |
| Device independant Windows bitmaps |
| Encapsulated Postscript images |
| Windows icons |
| Windows metafiles |
| Windows enhanced meta files |
| JPG images |
| JPEG images |
| JPE images |
| JFIF images |
| data error |
| insufficient memory |
| buffer error |
| incompatible version |
| invalid distance code |
| invalid literal/length code |
| oversubscribed dynamic bit lengths tree |
| incomplete dynamic bit lengths tree |
| oversubscribed literal/length tree |
| incomplete literal/length tree |
| empty distance tree with lengths |
| invalid block type |
| invalid stored block lengths |
| too many length or distance symbols |
| invalid bit length repeat |
| incorrect data check |
| Saving... |
| Converting... |
| Rendering... |
| Copying... |
| Optimizing... |
| RichEdit line insertion error |
| Failed to Load Stream |
| Failed to Save Stream |
| Cannot change the size of a JPEG image |
| JPEG error #%d |
| JPEG Image File |
| JPEG error #%d |
| need dictionary |
| stream end |
| file error |
| stream error |
| Invalid GIF data |
| Image height too small for contained frames |
| Image width too small for contained frames |
| Clipboard operations not supported for GIF objects |
| Image exceeds Logical Screen size |
| No global or local color table defined |
| Invalid pixel coordinates |
| Unsupported PixelFormat |
| Invalid image dimensions |
| Image has no DIB |
| Invalid stream operation |
| Color not in color table |
| Color table is empty |
| Image is empty |
| Invalid reduction method |
| Loading... |
| Color table overflow |
| Invalid color index |
| Unsupported GIF version |
| Invalid GIF signature |
| Invalid number of colors specified in Screen Descriptor |
| Invalid number of colors specified in Image Descriptor |
| Unknown extension type |
| Invalid extension introducer |
| Failed to allocate memory for GIF DIB |
| Decoder bit buffer under-run |
| Circular decoder table entry |
| Invalid Image trailer |
| Internal error: Extension Instance does not match Extension Label |
| Unsupported Application Extension block size |
| Unknown GIF block type |
| Object type not supported for operation |
| Docked control must have a name |
| Error removing control from dock tree |
| - Dock zone not found |
| - Dock zone has no control |
| Error loading dock zone from the stream. Expecting version %d, but found %d. |
| Separator |
| Error setting %s.Count |
| Listbox (%s) style must be virtual in order to set Count |
| "%s" is an invalid path |
| ANSI |
| ASCII |
| Unicode |
| Big Endian Unicode |
| UTF-8 |
| UTF-7 |
| Premature end of data |
| The specified directory does not exist. Create it? |
| Select Directory |
| Directory &Name: |
| D&rives: |
| &Directories: |
| &Files: (*.*) |
| Ne&twork... |
| Invalid clipboard format |
| Clipboard does not support Icons |
| Cannot open clipboard |
| Text exceeds memo capacity |
| Operation not supported on selected printer |
| There is no default printer currently selected |
| Menu '%s' is already being used by another form |
| No MCI device open |
| Unknown error code |
| Space |
| PgUp |
| PgDn |
| End |
| Home |
| Left |
| Up |
| Right |
| Down |
| Ins |
| Del |
| Shift+ |
| Ctrl+ |
| Alt+ |
| (Unknown) |
| Unable to insert a line |
| Confirm |
| &Yes |
| &No |
| OK |
| Cancel |
| &Help |
| &Abort |
| &Retry |
| &Ignore |
| &All |
| N&o to All |
| Yes to &All |
| BkSp |
| Tab |
| Esc |
| Enter |
| &Help |
| &Close |
| &Ignore |
| &Retry |
| Abort |
| &All |
| Cannot drag a form |
| Metafiles |
| Enhanced Metafiles |
| Icons |
| Bitmaps |
| Invalid input value |
| Invalid input value. Use escape key to abandon changes |
| Warning |
| Error |
| Information |
| Menu index out of range |
| Menu inserted twice |
| Sub-menu is not in menu |
| Not enough timers available |
| Printer is not currently printing |
| Printing in progress |
| Printer selected is not valid |
| %s on %s |
| GroupIndex cannot be less than a previous menu item's GroupIndex |
| Cannot create form. No MDI forms are currently active |
| Can only modify an image if it contains a bitmap |
| A control cannot have itself as its parent |
| OK |
| Cancel |
| &Yes |
| &No |
| Canvas does not allow drawing |
| Invalid image size |
| Too many images |
| Invalid ImageList |
| Unable to Replace Image |
| Invalid ImageList Index |
| Failed to read ImageList data from stream |
| Failed to write ImageList data to stream |
| Error creating window device context |
| Error creating window class |
| Cannot focus a disabled or invisible window |
| Control '%s' has no parent window |
| Parent given is not a parent of '%s' |
| Cannot hide an MDI Child Form |
| Cannot change Visible in OnShow or OnHide |
| Cannot make a visible window modal |
| ''%s'' is not a valid date and time |
| Unable to find a Table of Contents |
| No help found for %s |
| No context-sensitive help installed |
| No help found for context |
| No topic-based help system installed |
| Bitmap image is not valid |
| Icon image is not valid |
| Metafile is not valid |
| Invalid pixel format |
| Scan line index out of range |
| Cannot change the size of an icon |
| Invalid operation on TOleGraphic |
| Unknown picture file extension (.%s) |
| Unsupported clipboard format |
| Out of system resources |
| Out of memory while expanding memory stream |
| Error reading %s%s%s: %s |
| Stream read error |
| Property is read-only |
| Failed to get data for '%s' |
| Failed to set data for '%s' |
| Resource %s not found |
| %s.Seek not implemented |
| Operation not allowed on sorted list |
| Too many rows or columns deleted |
| %s not in a class registration group |
| Property %s does not exist |
| Stream write error |
| Thread creation error: %s |
| Thread Error: %s (%d) |
| ? |
| Cannot open file %s |
| Cannot open file "%s". %s |
| Grid too large for operation |
| Grid index out of range |
| Unable to write to %s |
| Invalid file name - %s |
| Invalid stream format |
| ''%s'' is not a valid component name |
| Invalid property value |
| Invalid property path |
| Invalid property value |
| Invalid data type for '%s' |
| Cannot insert or delete rows from grid |
| List capacity out of bounds (%d) |
| List count out of bounds (%d) |
| List index out of bounds (%d) |
| Friday |
| Saturday |
| Unable to create directory |
| Ancestor for '%s' not found |
| Cannot assign a %s to a %s |
| Bits index out of range |
| Can't write to a read-only resource stream |
| CheckSynchronize called from thread $%x, which is NOT the main thread |
| Class %s not found |
| A class named %s already exists |
| List does not allow duplicates ($0%x) |
| A component named %s already exists |
| String list does not allow duplicates |
| Cannot create file "%s". %s |
| Fixed column count must be less than column count |
| Fixed row count must be less than row count |
| September |
| October |
| November |
| December |
| Sun |
| Mon |
| Tue |
| Wed |
| Thu |
| Fri |
| Sat |
| Sunday |
| Monday |
| Tuesday |
| Wednesday |
| Thursday |
| May |
| Jun |
| Jul |
| Aug |
| Sep |
| Oct |
| Nov |
| Dec |
| January |
| February |
| March |
| April |
| May |
| June |
| July |
| August |
| Invalid variant type |
| Operation not supported |
| Unexpected variant error |
| External exception %x |
| Assertion failed |
| Interface not supported |
| Exception in safecall method |
| %s (%s, line %d) |
| Abstract Error |
| Access violation at address %p in module '%s'. %s of address %p |
| System Error. Code: %d. |
| %s |
| A call to an OS function failed |
| Jan |
| Feb |
| Mar |
| Apr |
| Application Error |
| Format '%s' invalid or incompatible with argument |
| No argument for format '%s' |
| Variant method calls not supported |
| Read |
| Write |
| Error creating variant or safe array |
| Variant or safe array index out of bounds |
| Variant or safe array is locked |
| Invalid variant type conversion |
| Invalid variant operation |
| Invalid variant operation (%s%.8x) |
| %s |
| Could not convert variant of type (%s) into type (%s) |
| Overflow while converting variant of type (%s) into type (%s) |
| Variant overflow |
| Invalid argument |
| Division by zero |
| Range check error |
| Integer overflow |
| Invalid floating point operation |
| Floating point division by zero |
| Floating point overflow |
| Floating point underflow |
| Invalid pointer operation |
| Invalid class typecast |
| Access violation at address %p. %s of address %p |
| Access violation |
| Stack overflow |
| Control-C hit |
| Privileged instruction |
| Operation aborted |
| Exception %s in module %s at %p. |
| %s%s |
| '%s' is not a valid integer value |
| '%s' is not a valid floating point value |
| '%s' is not a valid date |
| '%s' is not a valid time |
| '%s' is not a valid date and time |
| Invalid argument to time encode |
| Invalid argument to date encode |
| Out of memory |
| I/O error %d |
| File not found |
| Invalid filename |
| Too many open files |
| File access denied |
| Read beyond end of file |
| Disk full |
| Invalid numeric input |
| Signature | 0xfeef04bd |
|---|---|
| StructVersion | 0x10000 |
| FileVersion | 1.0.0.0 |
| ProductVersion | 1.0.0.0 |
| FileFlags | (EMPTY) |
| FileOs |
VOS_DOS_WINDOWS32
VOS_NT_WINDOWS32
VOS__WINDOWS32
|
| FileType |
VFT_APP
|
| Language | English - United States |
| CompanyName | PK-ARTS Ltd. |
| FileDescription | coded by indie machine |
| FileVersion (#2) | 1.0.0.0 |
| InternalName | |
| LegalCopyright | |
| LegalTrademarks | |
| OriginalFilename | |
| ProductName | |
| ProductVersion (#2) | 1.0.0.0 |
| Comments |
| Resource LangID | Dutch - Netherlands |
|---|
| StartAddressOfRawData | 0x710000 |
|---|---|
| EndAddressOfRawData | 0x710040 |
| AddressOfIndex | 0x5897c8 |
| AddressOfCallbacks | 0x711010 |
| SizeOfZeroFill | 0 |
| Characteristics |
IMAGE_SCN_TYPE_REG
|
| Callbacks | (EMPTY) |
No comments yet.