6c8efb724b7025a0cad9a4593bc89a8f60321a9a4899039fe4e918bf01709acc

Summary

Architecture IMAGE_FILE_MACHINE_I386
Subsystem IMAGE_SUBSYSTEM_WINDOWS_CUI
Compilation Date 2025-Apr-11 15:58:11
Detected languages English - United States
Debug artifacts d:\packages\pkg_376997\bln_982\VISION\mfacme\Release\Win32\cblacme\cblacme.pdb
FileDescription Bridge DLL for ACUCOBOL-GT
InternalName cblacme.dll
OriginalFilename cblacme.dll
CompanyName Rocket Software
FileVersion vision-R21_020
LegalCopyright (C) Copyright 1984-2025 Rocket Software, Inc. or its affiliates. All Rights Reserved
ProductName Rocket COBOL 2022
ProductVersion 11.0.00175

Plugin Output

Suspicious No VirusTotal score. This file has never been scanned on VirusTotal.

Hashes

MD5 f50c18833f5444b97d28bf0ad5356f6d
SHA1 94657fa4d104d758ca51fa4be5d6edb33b88e7e3
SHA256 6c8efb724b7025a0cad9a4593bc89a8f60321a9a4899039fe4e918bf01709acc
SHA3 e990187918a7ef96fca56ac0ce0ef6309e6392ef00a7df1e515baf964f3c4848
SSDeep 192:AiEoS23ccPaCpqgx+mHRxtiLCwEtuwat8QT5l1BaVpjOjNaZLUI0zaMyJyEevnw:AiEz2tX8wiuwIvat8oqj/LUR8eH
Imports Hash 9cbbdb64d4ab4b16f4164b275f1e9eba

DOS Header

e_magic MZ
e_cblp 0x90
e_cp 0x3
e_crlc 0
e_cparhdr 0x4
e_minalloc 0
e_maxalloc 0xffff
e_ss 0
e_sp 0xb8
e_csum 0
e_ip 0
e_cs 0
e_ovno 0
e_oemid 0
e_oeminfo 0
e_lfanew 0x108

PE Header

Signature PE
Machine IMAGE_FILE_MACHINE_I386
NumberofSections 5
TimeDateStamp 2025-Apr-11 15:58:11
PointerToSymbolTable 0
NumberOfSymbols 0
SizeOfOptionalHeader 0xe0
Characteristics IMAGE_FILE_32BIT_MACHINE
IMAGE_FILE_DLL
IMAGE_FILE_EXECUTABLE_IMAGE

Image Optional Header

Magic PE32
LinkerVersion 14.0
SizeOfCode 0x2000
SizeOfInitializedData 0x2000
SizeOfUninitializedData 0
AddressOfEntryPoint 0x00001E1A (Section: .text)
BaseOfCode 0x1000
BaseOfData 0x3000
ImageBase 0x10000000
SectionAlignment 0x1000
FileAlignment 0x200
OperatingSystemVersion 6.0
ImageVersion 0.0
SubsystemVersion 6.0
Win32VersionValue 0
SizeOfImage 0x7000
SizeOfHeaders 0x400
Checksum 0
Subsystem IMAGE_SUBSYSTEM_WINDOWS_CUI
DllCharacteristics IMAGE_DLLCHARACTERISTICS_DYNAMIC_BASE
IMAGE_DLLCHARACTERISTICS_NX_COMPAT
SizeofStackReserve 0x100000
SizeofStackCommit 0x1000
SizeofHeapReserve 0x100000
SizeofHeapCommit 0x1000
LoaderFlags 0
NumberOfRvaAndSizes 16

.text

MD5 56310d4a6db372cc61a6c540445caa11
SHA1 265d95aaca37048cb6fb0c0214a0173b92ec92d1
SHA256 51c2e4aa09330a54ab01fc40c99668b6b6955054f1ffadaab103fc0838b01869
SHA3 3754bf9037784a9a25c4eed898dc9852a4dff831e6f833b3dcd19c2cb2312618
VirtualSize 0x1f77
VirtualAddress 0x1000
SizeOfRawData 0x2000
PointerToRawData 0x400
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_CODE
IMAGE_SCN_MEM_EXECUTE
IMAGE_SCN_MEM_READ
Entropy 6.10613

.rdata

MD5 1d70c46aa3a7bbf42b048862a7397524
SHA1 0d14a738b31cf03b485143091a8a7a017451d22d
SHA256 9d8f6b7fed8643be07fe52ccd0d6651194d50f2986480d6dede4b099f7e5d213
SHA3 394ce06754a386449b575ea4ee756cbc934dfb19ee868f7bd7ee6566cd03be95
VirtualSize 0xf04
VirtualAddress 0x3000
SizeOfRawData 0x1000
PointerToRawData 0x2400
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 4.60398

.data

MD5 5919c0f3e8bc6cda3746e390550c5306
SHA1 67e2f0b16a72c9f900f0b08927eb35d5ad500437
SHA256 c1c023d2334b3c0cce2b685fe1bd8576f8f90687112ba503fe74ca5a6cfecf24
SHA3 2c9b63da0fd798efbb5b874d4cbd07edf89b82cdf4b3d8a9c0dcc90e2275d175
VirtualSize 0x458
VirtualAddress 0x4000
SizeOfRawData 0x200
PointerToRawData 0x3400
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
Entropy 0.441447

.rsrc

MD5 e1030e89b2ed01e1242c80bbdc0b7ffe
SHA1 142b1d4ff16716f30c84727dddf867be47dd1b1e
SHA256 993bad593e3edaa3707b7e8d2b0653d916cd4a20328266f6719ff85943c0da37
SHA3 e4a9b8f2065d8e06328e02cb6357142719ac1ee76da6680841c4d64a566047b5
VirtualSize 0x5a8
VirtualAddress 0x5000
SizeOfRawData 0x600
PointerToRawData 0x3600
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 4.03163

.reloc

MD5 2eba7a57ff66c2f2c4cfd24b2672147b
SHA1 bb4e6fa38b933e216cf34099b09000b134f2ecbb
SHA256 eccd16dc33056322f6669e6d15e87b1675ae47b17c105963a52ddbc442a86b3f
SHA3 53c78c81bee04614c2d87acc4a605340736b8ba23ac0783f19a7859029d6e40d
VirtualSize 0x380
VirtualAddress 0x6000
SizeOfRawData 0x400
PointerToRawData 0x3c00
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_DISCARDABLE
IMAGE_SCN_MEM_READ
Entropy 6.22679

Imports

KERNEL32.dll HeapAlloc
HeapReAlloc
HeapFree
GetProcessHeap
CloseHandle
GetLastError
InitializeCriticalSection
EnterCriticalSection
LeaveCriticalSection
TryEnterCriticalSection
DeleteCriticalSection
WaitForSingleObject
Sleep
CreateThread
GetCurrentThreadId
TerminateThread
TlsAlloc
TlsGetValue
TlsSetValue
TlsFree
GetCurrentProcess
GetModuleHandleW
IsProcessorFeaturePresent
GetStartupInfoW
SetUnhandledExceptionFilter
UnhandledExceptionFilter
TerminateProcess
IsDebuggerPresent
InitializeSListHead
DisableThreadLibraryCalls
GetSystemTimeAsFileTime
GetCurrentProcessId
QueryPerformanceCounter
VCRUNTIME140.dll __current_exception
__current_exception_context
_except_handler4_common
__std_type_info_destroy_list
memset
api-ms-win-crt-runtime-l1-1-0.dll _initialize_onexit_table
_initialize_narrow_environment
terminate
_seh_filter_dll
_initterm_e
_initterm
_cexit
_crt_at_quick_exit
_crt_atexit
_execute_onexit_table
_configure_narrow_argv
_register_onexit_function

Delayed Imports

Ordinal 1
Address 0x1000

(#2)

Ordinal 2
Address 0x1020

(#3)

Ordinal 3
Address 0x1040

(#4)

Ordinal 4
Address 0x1060

(#5)

Ordinal 11
Address 0x1120

(#6)

Ordinal 12
Address 0x1150

(#7)

Ordinal 13
Address 0x11e0

(#8)

Ordinal 14
Address 0x14e0

(#9)

Ordinal 16
Address 0x1550

(#10)

Ordinal 17
Address 0x1620

(#11)

Ordinal 18
Address 0x16f0

(#12)

Ordinal 19
Address 0x17e0

(#13)

Ordinal 20
Address 0x1860

(#14)

Ordinal 21
Address 0x1920

(#15)

Ordinal 22
Address 0x1690

(#16)

Ordinal 23
Address 0x1270

(#17)

Ordinal 24
Address 0x13c0

(#18)

Ordinal 25
Address 0x1410

(#19)

Ordinal 26
Address 0x1450

(#20)

Ordinal 27
Address 0x1490

(#21)

Ordinal 28
Address 0x16b0

(#22)

Ordinal 29
Address 0x1470

(#23)

Ordinal 30
Address 0x15b0

(#24)

Ordinal 31
Address 0x10a0

(#25)

Ordinal 32
Address 0x1080

(#26)

Ordinal 41
Address 0x10c0

(#27)

Ordinal 42
Address 0x10d0

(#28)

Ordinal 43
Address 0x10e0

(#29)

Ordinal 44
Address 0x1100

(#30)

Ordinal 45
Address 0x10f0

(#31)

Ordinal 60
Address 0x1110

1

Type RT_VERSION
Language UNKNOWN
Codepage UNKNOWN
Size 0x384
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.56114
MD5 de8976009f607d097dcbdcddeed36db8
SHA1 87d3150117a7a93f58f520af0a9d3f8a19595350
SHA256 391a913fa3908ac06d3fc691e03c3ffcd73c4f87ce4db5a131240c1890ec6775
SHA3 55ca62f79862d1776e4b03103dafbeac70442ceefc45805b9a3cfdb4befac7f3

2

Type RT_MANIFEST
Language English - United States
Codepage UNKNOWN
Size 0x17d
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 4.91161
MD5 1e4a89b11eae0fcf8bb5fdd5ec3b6f61
SHA1 4260284ce14278c397aaf6f389c1609b0ab0ce51
SHA256 4bb79dcea0a901f7d9eac5aa05728ae92acb42e0cb22e5dd14134f4421a3d8df
SHA3 4bb9e8b5a714cae82782f3831cc2d45f4bf4a50a755fe584d2d1893129d68353

Version Info

Signature 0xfeef04bd
StructVersion 0x10000
FileVersion 11000.0.0.31585
ProductVersion 9.2.0.31585
FileFlags (EMPTY)
FileOs VOS_DOS_WINDOWS32
VOS_NT
VOS_NT_WINDOWS32
VOS_WINCE
VOS__WINDOWS32
FileType VFT_DLL
Language English - United States
FileDescription Bridge DLL for ACUCOBOL-GT
InternalName cblacme.dll
OriginalFilename cblacme.dll
CompanyName Rocket Software
FileVersion (#2) vision-R21_020
LegalCopyright (C) Copyright 1984-2025 Rocket Software, Inc. or its affiliates. All Rights Reserved
ProductName Rocket COBOL 2022
ProductVersion (#2) 11.0.00175
Resource LangID UNKNOWN

IMAGE_DEBUG_TYPE_CODEVIEW

Characteristics 0
TimeDateStamp 2025-Apr-11 15:58:11
Version 0.0
SizeofData 103
AddressOfRawData 0x34dc
PointerToRawData 0x28dc
Referenced File d:\packages\pkg_376997\bln_982\VISION\mfacme\Release\Win32\cblacme\cblacme.pdb

IMAGE_DEBUG_TYPE_VC_FEATURE

Characteristics 0
TimeDateStamp 2025-Apr-11 15:58:11
Version 0.0
SizeofData 20
AddressOfRawData 0x3544
PointerToRawData 0x2944

IMAGE_DEBUG_TYPE_POGO

Characteristics 0
TimeDateStamp 2025-Apr-11 15:58:11
Version 0.0
SizeofData 648
AddressOfRawData 0x3558
PointerToRawData 0x2958

TLS Callbacks

Load Configuration

Size 0xc0
TimeDateStamp 1970-Jan-01 00:00:00
Version 0.0
GlobalFlagsClear (EMPTY)
GlobalFlagsSet (EMPTY)
CriticalSectionDefaultTimeout 0
DeCommitFreeBlockThreshold 0
DeCommitTotalFreeThreshold 0
LockPrefixTable 0
MaximumAllocationSize 0
VirtualMemoryThreshold 0
ProcessAffinityMask 0
ProcessHeapFlags (EMPTY)
CSDVersion 0
Reserved1 0
EditList 0
SecurityCookie 0x10004040
SEHandlerTable 0x10003440
SEHandlerCount 1

RICH Header

XOR Key 0xee5e013f
Unmarked objects 0
Imports (VS2008 SP1 build 30729) 2
Imports (33731) 2
ASM objects (33731) 1
C objects (33731) 10
C++ objects (33731) 11
Imports (27412) 3
Total imports 50
C objects (33812) 4
Exports (33812) 1
Resource objects (33812) 1
151 1
Linker (33812) 1

Errors

[*] Warning: 29 invalid export(s) not shown.
Leave a comment

No comments yet.