| Architecture |
IMAGE_FILE_MACHINE_AMD64
|
|---|---|
| Subsystem |
IMAGE_SUBSYSTEM_WINDOWS_GUI
|
| Compilation Date | 2026-May-10 17:52:04 |
| Detected languages |
English - United States
German - Germany German - Liechtenstein |
| Company | Nenad Hrg (SoftwareOK.de) |
| CompanyName | Nenad Hrg (SoftwareOK.com) |
| Comments | Q-Dir - the alternative Quad File Explorer for Windows |
| FileDescription | Q-Dir |
| FileInfo | Q-Dir |
| InternalName | Q-Dir |
| LegalCopyright | Copyright © Nenad Hrg (SoftwareOK.com) 2006-2026 |
| OriginalFilename | Q-Dir.exe |
| ProductName | Q-Dir SoftwareOK.com |
| ProductVersion | 12.63.0.0 |
| FileVersion | 12.63.0.0 |
| Info | Matching compiler(s): | MASM/TASM - sig1(h) |
| Suspicious | Strings found in the binary may indicate undesirable behavior: |
Contains references to system / monitoring tools:
|
| Info | Libraries used to perform cryptographic operations: | Microsoft's Cryptography API |
| Suspicious | The PE is possibly packed. | Unusual section name found: Shared |
| Malicious | The PE contains functions mostly used by malware. |
[!] The program may be hiding some of its imports:
|
| Info | The PE's resources present abnormal characteristics. |
Resource AR is possibly compressed or encrypted.
Resource ARA is possibly compressed or encrypted. Resource BG is possibly compressed or encrypted. Resource BR is possibly compressed or encrypted. Resource CH is possibly compressed or encrypted. Resource CHS is possibly compressed or encrypted. Resource COL is possibly compressed or encrypted. Resource CZ is possibly compressed or encrypted. Resource DA is possibly compressed or encrypted. Resource DE is possibly compressed or encrypted. Resource EE is possibly compressed or encrypted. Resource EN is possibly compressed or encrypted. Resource ES is possibly compressed or encrypted. Resource FI is possibly compressed or encrypted. Resource FR is possibly compressed or encrypted. Resource GR is possibly compressed or encrypted. Resource HE is possibly compressed or encrypted. Resource HELP_DE_EN is possibly compressed or encrypted. Resource HR is possibly compressed or encrypted. Resource HU is possibly compressed or encrypted. Resource IN is possibly compressed or encrypted. Resource IT is possibly compressed or encrypted. Resource JA is possibly compressed or encrypted. Resource KR is possibly compressed or encrypted. Resource MENU_2017 is possibly compressed or encrypted. Resource ML is possibly compressed or encrypted. Resource NL is possibly compressed or encrypted. Resource NO is possibly compressed or encrypted. Resource PH is possibly compressed or encrypted. Resource PL is possibly compressed or encrypted. Resource PS is possibly compressed or encrypted. Resource RO is possibly compressed or encrypted. Resource RU is possibly compressed or encrypted. Resource SK is possibly compressed or encrypted. Resource SLO is possibly compressed or encrypted. Resource SRP is possibly compressed or encrypted. Resource SV is possibly compressed or encrypted. Resource TR is possibly compressed or encrypted. Resource UK is possibly compressed or encrypted. Resource UKR is possibly compressed or encrypted. |
| Info | The PE is digitally signed. |
Signer: Nenad Hrg
Issuer: GlobalSign GCC R45 EV CodeSigning CA 2020 |
| Safe | VirusTotal score: 0/71 (Scanned on 2026-05-22 05:17:29) | All the AVs think this file is safe. |
| e_magic | MZ |
|---|---|
| e_cblp | 0x90 |
| e_cp | 0x3 |
| e_crlc | 0 |
| e_cparhdr | 0x4 |
| e_minalloc | 0 |
| e_maxalloc | 0xffff |
| e_ss | 0 |
| e_sp | 0xb8 |
| e_csum | 0 |
| e_ip | 0 |
| e_cs | 0 |
| e_ovno | 0 |
| e_oemid | 0 |
| e_oeminfo | 0 |
| e_lfanew | 0xe8 |
| Signature | PE |
|---|---|
| Machine |
IMAGE_FILE_MACHINE_AMD64
|
| NumberofSections | 7 |
| TimeDateStamp | 2026-May-10 17:52:04 |
| PointerToSymbolTable | 0 |
| NumberOfSymbols | 0 |
| SizeOfOptionalHeader | 0xf0 |
| Characteristics |
IMAGE_FILE_EXECUTABLE_IMAGE
IMAGE_FILE_LARGE_ADDRESS_AWARE
IMAGE_FILE_RELOCS_STRIPPED
|
| Magic | PE32+ |
|---|---|
| LinkerVersion | 8.0 |
| SizeOfCode | 0x124200 |
| SizeOfInitializedData | 0xca200 |
| SizeOfUninitializedData | 0 |
| AddressOfEntryPoint | 0x000000000010D800 (Section: .text) |
| BaseOfCode | 0x1000 |
| ImageBase | 0x400000 |
| SectionAlignment | 0x1000 |
| FileAlignment | 0x200 |
| OperatingSystemVersion | 4.0 |
| ImageVersion | 0.0 |
| SubsystemVersion | 5.2 |
| Win32VersionValue | 0 |
| SizeOfImage | 0x1f3000 |
| SizeOfHeaders | 0x400 |
| Checksum | 0x1e9432 |
| Subsystem |
IMAGE_SUBSYSTEM_WINDOWS_GUI
|
| DllCharacteristics |
IMAGE_DLLCHARACTERISTICS_TERMINAL_SERVER_AWARE
|
| SizeofStackReserve | 0x100000 |
| SizeofStackCommit | 0x1000 |
| SizeofHeapReserve | 0x100000 |
| SizeofHeapCommit | 0x1000 |
| LoaderFlags | 0 |
| NumberOfRvaAndSizes | 16 |
| KERNEL32.dll |
GetDriveTypeA
FlushFileBuffers SetStdHandle GetLocaleInfoA LCMapStringW LCMapStringA GetStringTypeW GetStringTypeA GetCPInfo GetOEMCP GetACP LoadLibraryA CompareStringA VirtualQuery GetSystemInfo VirtualProtect HeapCreate HeapSetInformation TlsGetValue TlsSetValue TlsFree TlsAlloc GetStartupInfoA RtlPcToFileHeader SetHandleCount GetCommandLineW GetCommandLineA GetEnvironmentStringsW FreeEnvironmentStringsW GetEnvironmentStrings FreeEnvironmentStringsA GetModuleFileNameA GetStdHandle HeapSize GetModuleHandleA RtlUnwindEx SetCurrentDirectoryW GetCurrentDirectoryW SetEnvironmentVariableW HeapReAlloc GetStartupInfoW GetProcessHeap HeapAlloc GetVersionExA HeapFree InterlockedPopEntrySList VirtualAlloc VirtualFree InterlockedPushEntrySList RtlCaptureContext RtlLookupFunctionEntry RtlVirtualUnwind SetUnhandledExceptionFilter UnhandledExceptionFilter GetSystemTimeAsFileTime QueryPerformanceCounter IsBadReadPtr IsBadWritePtr IsBadCodePtr SetEndOfFile GetTempFileNameW SetVolumeLabelW CreateMutexW HeapDestroy GetTickCount GetProfileStringW GetLocaleInfoW GetNumberFormatW GetEnvironmentVariableW GetPrivateProfileIntW GetPrivateProfileSectionW WritePrivateProfileSectionW WritePrivateProfileStringW GetFullPathNameW GetDiskFreeSpaceW TerminateProcess GetSystemDirectoryW GetUserDefaultLangID GetUserDefaultLCID EnumDateFormatsW EnumTimeFormatsW GetTimeFormatW GetDateFormatW GetShortPathNameW GetPrivateProfileStringW GetLocalTime GetFileSize SetFilePointer SetFileTime ReadFile GetLastError TerminateThread GetCurrentProcessId MoveFileW MulDiv SizeofResource GetTimeZoneInformation lstrcpynA GetLogicalDrives DeleteCriticalSection InitializeCriticalSection __C_specific_handler GlobalHandle FreeResource CreateThread ExitProcess Sleep OutputDebugStringA RemoveDirectoryW DeleteFileW CopyFileW GetLogicalDriveStringsW GetDriveTypeW GetFileAttributesW SetFileAttributesW CreateDirectoryW GetTempPathW GetModuleFileNameW CreateFileW WriteFile CloseHandle lstrcpyW SetLastError FindFirstFileW GetVersionExW CompareStringW FindClose FindNextFileW FindResourceW LoadResource LockResource FreeLibrary GetCurrentProcess FlushInstructionCache WideCharToMultiByte lstrcmpiW lstrcmpW lstrcatW GetWindowsDirectoryW GetModuleHandleW GetProcAddress GetCurrentThreadId OutputDebugStringW lstrlenA MultiByteToWideChar LeaveCriticalSection EnterCriticalSection RaiseException GlobalSize GlobalLock GlobalAlloc GlobalUnlock GlobalFree lstrcpynW lstrlenW LoadLibraryW GetFileType SetEnvironmentVariableA |
|---|---|
| USER32.dll |
SetMenuDefaultItem
IsRectEmpty SetScrollInfo SetScrollPos GetScrollPos MoveWindow GetSystemMenu GetMenuDefaultItem PeekMessageW IsMenu SetWindowsHookExW GetSysColorBrush UnhookWindowsHookEx CallNextHookEx WindowFromPoint GetWindowThreadProcessId MessageBeep SendMessageW wsprintfW SetWindowTextW CallWindowProcW GetWindowLongPtrW SetWindowLongPtrW EnumChildWindows FindWindowExW EndDialog GetWindowLongW SetWindowPos TrackPopupMenuEx SetMenuItemInfoW InsertMenuW CheckMenuItem EnableMenuItem GetWindowDC IsDialogMessageW TranslateAcceleratorW SetRect DrawEdge SendMessageA LoadBitmapW GetIconInfo TrackPopupMenu TrackMouseEvent IntersectRect GetDoubleClickTime GetMessagePos EqualRect CreatePopupMenu AppendMenuW CopyRect CharUpperW CopyImage EnumWindows SetMenu SetForegroundWindow DeleteMenu LoadIconW LoadAcceleratorsW LoadStringA GetMenuStringW RemoveMenu CheckDlgButton IsDlgButtonChecked CreateDialogIndirectParamW GetClipboardData SetPropW GetMenu SetActiveWindow mouse_event MenuItemFromPoint GetClientRect ShowWindow SetTimer KillTimer GetParent GetDlgItem MapWindowPoints SystemParametersInfoW GetWindowRect GetWindow SetWindowLongW CharNextW RegisterClipboardFormatW GetFocus PostQuitMessage GetAsyncKeyState MessageBoxW LoadImageW GetSystemMetrics GetDlgCtrlID LoadMenuW GetMenuItemCount DestroyMenu CreateWindowExW GetWindowTextW GetMenuState InsertMenuItemW GetScrollInfo SetMenuItemBitmaps keybd_event MapVirtualKeyW DrawIcon RegisterClassW ScrollWindowEx IsZoomed SendMessageTimeoutW GetMessageW RemovePropW GetPropW ShowCaret GetKeyState SetClassLongW CreateDialogParamW PostMessageW FrameRect InflateRect SetParent IsWindowVisible ClientToScreen CreateAcceleratorTableW GetDesktopWindow IsChild RedrawWindow InvalidateRgn DialogBoxIndirectParamW RegisterWindowMessageW GetClassInfoExW LoadCursorW RegisterClassExW MessageBoxA GetCapture ReleaseCapture EndPaint BeginPaint DestroyIcon DrawAnimatedRects GetWindowTextLengthW ScreenToClient SetDlgItemTextW IsWindow LoadStringW CharLowerW DrawTextW CloseClipboard SetClipboardData EmptyClipboard OpenClipboard EnableWindow ReleaseDC GetDC DialogBoxParamW GetSubMenu DefWindowProcW OffsetRect GetMenuItemInfoW DestroyCursor GetActiveWindow SetRectEmpty CreateCursor GetClassNameW DestroyWindow UpdateWindow InvalidateRect IsWindowEnabled SetCapture SetFocus PtInRect FillRect DrawFocusRect SetCursor GetCursorPos GetSysColor SetWindowPlacement GetMenuItemID DispatchMessageW TranslateMessage GetWindowPlacement |
| GDI32.dll |
CreateEnhMetaFileW
Rectangle GetBkColor DPtoLP LPtoDP SetMapMode OffsetViewportOrgEx GetViewportExtEx GetWindowExtEx SetViewportExtEx SetWindowExtEx CloseEnhMetaFile ResetDCW StartPage EndPage DeleteEnhMetaFile EndDoc AbortDoc StartDocW SetStretchBltMode StretchBlt GetCurrentObject GetPixel SetDIBitsToDevice SetPixel CreateDCW SetViewportOrgEx CreateBitmap CreatePatternBrush PatBlt SelectClipRgn GetDIBits GetClipBox GetTextExtentPoint32W LineTo MoveToEx CreatePen IntersectClipRect OffsetWindowOrgEx ExcludeClipRect SetWindowOrgEx ExtTextOutW SaveDC CreateCompatibleBitmap BitBlt GetDeviceCaps SetBkMode CreateFontIndirectW DeleteDC CreateDIBSection CreateCompatibleDC SelectObject DeleteObject GetObjectW GetStockObject SetBkColor SetTextColor GetEnhMetaFileHeader RestoreDC CreateSolidBrush |
| WINSPOOL.DRV |
ClosePrinter
GetPrinterW OpenPrinterW |
| comdlg32.dll |
GetSaveFileNameW
PrintDlgW PageSetupDlgW GetOpenFileNameW ChooseColorW |
| ADVAPI32.dll |
RegDeleteValueW
RegCloseKey RegCreateKeyExW RegOpenKeyExW RegQueryValueExW RegSetValueExW RegEnumKeyExW GetUserNameW RegOpenKeyW AdjustTokenPrivileges LookupPrivilegeValueW OpenProcessToken CryptDestroyHash CryptReleaseContext CryptCreateHash CryptAcquireContextW CryptHashData CryptGetHashParam GetTokenInformation RegDeleteKeyW |
| SHELL32.dll |
SHBrowseForFolderW
SHGetDesktopFolder SHGetMalloc #190 SHGetSpecialFolderLocation SHGetPathFromIDListW SHAppBarMessage Shell_NotifyIconW #21 DragFinish ShellExecuteW #88 #68 ExtractIconExW SHGetSettings #25 DragQueryFileW #17 #16 SHGetFileInfoW DragAcceptFiles SHFileOperationW #155 #18 #4 #2 SHGetSpecialFolderPathW ShellExecuteExW |
| ole32.dll |
RegisterDragDrop
OleLockRunning CoTaskMemAlloc CLSIDFromString CLSIDFromProgID StringFromCLSID OleUninitialize OleInitialize CreateStreamOnHGlobal CoCreateInstance PropVariantClear ReleaseStgMedium CoTaskMemFree OleDuplicateData CoInitialize CoUninitialize OleSetClipboard OleGetClipboard RevokeDragDrop CoSetProxyBlanket DoDragDrop |
| OLEAUT32.dll |
VariantChangeType
OleCreatePictureIndirect DispCallFunc SafeArrayDestroy VariantInit SafeArrayCreateVector SafeArrayAccessData SafeArrayUnaccessData LoadRegTypeLib SysStringLen SysAllocString VariantClear SysAllocStringLen SysFreeString |
| COMCTL32.dll |
ImageList_LoadImageW
_TrackMouseEvent ImageList_ReplaceIcon ImageList_Create ImageList_GetIconSize InitCommonControlsEx ImageList_SetBkColor ImageList_DrawEx ImageList_GetIcon ImageList_GetImageCount ImageList_Remove #17 ImageList_Destroy ImageList_Draw ImageList_AddMasked ImageList_GetImageInfo CreateStatusWindowW PropertySheetW DestroyPropertySheetPage CreatePropertySheetPageW |
| MSIMG32.dll |
AlphaBlend
|
| gdiplus.dll |
GdipGetImagePixelFormat
GdipCloneImage GdipCloneBrush GdipDrawImageRectRectI GdipDrawImageRectI GdipFillPath GdipSetSmoothingMode GdipSetInterpolationMode GdipGetImageGraphicsContext GdipCreateFromHDC GdipAddPathArcI GdipAddPathLineI GdipClosePathFigure GdipGetPropertyItemSize GdipSetImageAttributesColorMatrix GdiplusStartup GdipBitmapUnlockBits GdipBitmapLockBits GdipCreateHICONFromBitmap GdipCreateBitmapFromHBITMAP GdipCreateBitmapFromScan0 GdipCreateBitmapFromStreamICM GdipCreateBitmapFromStream GdipCreateBitmapFromFile GdipGetImageHeight GdipGetImageWidth GdipDisposeImage GdipDeleteGraphics GdipDeletePath GdipCreatePath GdipDeleteBrush GdipDisposeImageAttributes GdipCreateImageAttributes GdipFree GdipAlloc GdipSetCompositingMode GdipImageSelectActiveFrame GdipImageRotateFlip GdipSetImageAttributesGamma GdipGetImageThumbnail GdipSetCompositingQuality GdipCreateSolidFill |
| WINMM.dll |
PlaySoundW
timeGetTime |
| SHLWAPI.dll |
StrCpyW
PathRelativePathToW |
| Q-Dir |
| ...... |
| Signature | 0xfeef04bd |
|---|---|
| StructVersion | 0x10000 |
| FileVersion | 12.63.0.0 |
| ProductVersion | 12.63.0.0 |
| FileFlags |
VS_FF_PRIVATEBUILD
VS_FF_SPECIALBUILD
|
| FileOs |
VOS_DOS_WINDOWS32
VOS_NT_WINDOWS32
VOS__WINDOWS32
|
| FileType |
VFT_DLL
|
| Language | UNKNOWN |
| Company | Nenad Hrg (SoftwareOK.de) |
| CompanyName | Nenad Hrg (SoftwareOK.com) |
| Comments | Q-Dir - the alternative Quad File Explorer for Windows |
| FileDescription | Q-Dir |
| FileInfo | Q-Dir |
| InternalName | Q-Dir |
| LegalCopyright | Copyright © Nenad Hrg (SoftwareOK.com) 2006-2026 |
| OriginalFilename | Q-Dir.exe |
| ProductName | Q-Dir SoftwareOK.com |
| ProductVersion (#2) | 12.63.0.0 |
| FileVersion (#2) | 12.63.0.0 |
| Resource LangID | UNKNOWN |
|---|
| StartAddressOfRawData | 0x56b000 |
|---|---|
| EndAddressOfRawData | 0x56b018 |
| AddressOfIndex | 0x55cf54 |
| AddressOfCallbacks | 0x5277f0 |
| SizeOfZeroFill | 0 |
| Characteristics |
IMAGE_SCN_TYPE_REG
|
| Callbacks | (EMPTY) |
| XOR Key | 0x256e25f0 |
|---|---|
| Unmarked objects | 0 |
| C++ objects (30806) | 1 |
| ASM objects (30806) | 1 |
| ASM objects (40310) | 12 |
| Imports (40310) | 29 |
| Total imports | 652 |
| C objects (40310) | 185 |
| C++ objects (40310) | 163 |
| Resource objects (40310) | 1 |
| Linker (40310) | 1 |
No comments yet.