427538c1e474fce0cf7ddff7bc45d236793b2db3791a74c61f73c553479e14e2

Summary

Architecture IMAGE_FILE_MACHINE_I386
Subsystem IMAGE_SUBSYSTEM_WINDOWS_GUI
Compilation Date 2012-Jan-18 16:33:17
Detected languages Dutch - Netherlands
English - United Kingdom
English - United States
French - France
CompanyName
FileDescription
FileVersion 1.0.0.0
InternalName
LegalCopyright
LegalTrademarks
OriginalFilename
ProductName
ProductVersion 1.0.0.0
Comments

Plugin Output

Info Interesting strings found in the binary: Contains domain names:
  • exitad.yoyogames.com
  • http://exitad.yoyogames.com
  • http://www.yoyogames.com
  • https://jcl.svn.sourceforge.net
  • https://jcl.svn.sourceforge.net/svnroot/jcl/trunk/jcl/source/common/Jcl8087.pas
  • https://jcl.svn.sourceforge.net/svnroot/jcl/trunk/jcl/source/common/JclAnsiStrings.pas
  • https://jcl.svn.sourceforge.net/svnroot/jcl/trunk/jcl/source/common/JclBase.pas
  • https://jcl.svn.sourceforge.net/svnroot/jcl/trunk/jcl/source/common/JclCharsets.pas
  • https://jcl.svn.sourceforge.net/svnroot/jcl/trunk/jcl/source/common/JclDateTime.pas
  • https://jcl.svn.sourceforge.net/svnroot/jcl/trunk/jcl/source/common/JclFileUtils.pas
  • https://jcl.svn.sourceforge.net/svnroot/jcl/trunk/jcl/source/common/JclIniFiles.pas
  • https://jcl.svn.sourceforge.net/svnroot/jcl/trunk/jcl/source/common/JclLogic.pas
  • https://jcl.svn.sourceforge.net/svnroot/jcl/trunk/jcl/source/common/JclMath.pas
  • https://jcl.svn.sourceforge.net/svnroot/jcl/trunk/jcl/source/common/JclResources.pas
  • https://jcl.svn.sourceforge.net/svnroot/jcl/trunk/jcl/source/common/JclStreams.pas
  • https://jcl.svn.sourceforge.net/svnroot/jcl/trunk/jcl/source/common/JclStringConversions.pas
  • https://jcl.svn.sourceforge.net/svnroot/jcl/trunk/jcl/source/common/JclStrings.pas
  • https://jcl.svn.sourceforge.net/svnroot/jcl/trunk/jcl/source/common/JclSynch.pas
  • https://jcl.svn.sourceforge.net/svnroot/jcl/trunk/jcl/source/common/JclSysInfo.pas
  • https://jcl.svn.sourceforge.net/svnroot/jcl/trunk/jcl/source/common/JclSysUtils.pas
  • https://jcl.svn.sourceforge.net/svnroot/jcl/trunk/jcl/source/common/JclUnicode.pas
  • https://jcl.svn.sourceforge.net/svnroot/jcl/trunk/jcl/source/common/JclUnitVersioning.pas
  • https://jcl.svn.sourceforge.net/svnroot/jcl/trunk/jcl/source/common/JclWideStrings.pas
  • https://jcl.svn.sourceforge.net/svnroot/jcl/trunk/jcl/source/windows/JclConsole.pas
  • https://jcl.svn.sourceforge.net/svnroot/jcl/trunk/jcl/source/windows/JclDebug.pas
  • https://jcl.svn.sourceforge.net/svnroot/jcl/trunk/jcl/source/windows/JclHookExcept.pas
  • https://jcl.svn.sourceforge.net/svnroot/jcl/trunk/jcl/source/windows/JclPeImage.pas
  • https://jcl.svn.sourceforge.net/svnroot/jcl/trunk/jcl/source/windows/JclRegistry.pas
  • https://jcl.svn.sourceforge.net/svnroot/jcl/trunk/jcl/source/windows/JclSecurity.pas
  • https://jcl.svn.sourceforge.net/svnroot/jcl/trunk/jcl/source/windows/JclShell.pas
  • https://jcl.svn.sourceforge.net/svnroot/jcl/trunk/jcl/source/windows/JclTD32.pas
  • https://jcl.svn.sourceforge.net/svnroot/jcl/trunk/jcl/source/windows/JclWin32.pas
  • jcl.svn.sourceforge.net
  • sourceforge.net
  • svn.sourceforge.net
  • www.yoyogames.com
  • yoyogames.com
Info Cryptographic algorithms detected in the binary: Uses constants related to CRC32
Microsoft's Cryptography API
Suspicious The PE is possibly packed. Unusual section name found: .itext
Unusual section name found: .didata
Malicious The PE contains functions mostly used by malware. [!] The program may be hiding some of its imports:
  • LoadLibraryA
  • LoadLibraryExW
  • GetProcAddress
  • LoadLibraryW
Functions which can be used for anti-debugging purposes:
  • FindWindowW
  • SwitchToThread
Code injection capabilities (PowerLoader):
  • GetWindowLongW
  • FindWindowW
Can access the registry:
  • RegQueryValueExW
  • RegOpenKeyExW
  • RegCloseKey
  • RegUnLoadKeyW
  • RegSetValueExW
  • RegSaveKeyW
  • RegRestoreKeyW
  • RegReplaceKeyW
  • RegQueryInfoKeyW
  • RegLoadKeyW
  • RegFlushKey
  • RegEnumValueW
  • RegEnumKeyExW
  • RegDeleteValueW
  • RegDeleteKeyW
  • RegCreateKeyExW
Possibly launches other programs:
  • CreateProcessW
  • ShellExecuteW
Uses Microsoft's cryptographic API:
  • CryptQueryObject
Uses functions commonly found in keyloggers:
  • MapVirtualKeyW
  • GetForegroundWindow
  • GetAsyncKeyState
  • CallNextHookEx
Memory manipulation functions often used by packers:
  • VirtualAlloc
  • VirtualProtect
Enumerates local disk drives:
  • GetVolumeInformationW
  • GetDriveTypeW
Manipulates other processes:
  • OpenProcess
Can take screenshots:
  • GetDCEx
  • GetDC
  • FindWindowW
  • CreateCompatibleDC
  • BitBlt
Reads the contents of the clipboard:
  • GetClipboardData
Suspicious The file contains overlay data. 1334132 bytes of data starting at offset 0x304000.
The overlay data has an entropy of 7.99067 and is possibly compressed or encrypted.
Suspicious No VirusTotal score. This file has never been scanned on VirusTotal.

Hashes

MD5 2ca3382146dd95751e794a21b3b4521f
SHA1 de1044060e3d5c861e9961e81b8cad46931fc43f
SHA256 427538c1e474fce0cf7ddff7bc45d236793b2db3791a74c61f73c553479e14e2
SHA3 a0b4dc926fe83d8c4913212c7cd164d6e63e314286116753f3222e442ff48643
SSDeep 49152:WyMNKCjv1gb3MSLBGkzFApRKc7FF5gLtui6DlT1ITK0AhgzCDrUBOlDYtoyIiO7Y:WyMNL76YkzFsK6VgneRUBauPSY
Imports Hash 5b6f09f7a7f601bdc5dee37aad85c044

DOS Header

e_magic MZ
e_cblp 0x50
e_cp 0x2
e_crlc 0
e_cparhdr 0x4
e_minalloc 0xf
e_maxalloc 0xffff
e_ss 0
e_sp 0xb8
e_csum 0
e_ip 0
e_cs 0
e_ovno 0x1a
e_oemid 0
e_oeminfo 0
e_lfanew 0x100

PE Header

Signature PE
Machine IMAGE_FILE_MACHINE_I386
NumberofSections 10
TimeDateStamp 2012-Jan-18 16:33:17
PointerToSymbolTable 0
NumberOfSymbols 0
SizeOfOptionalHeader 0xe0
Characteristics IMAGE_FILE_32BIT_MACHINE
IMAGE_FILE_BYTES_REVERSED_HI
IMAGE_FILE_BYTES_REVERSED_LO
IMAGE_FILE_EXECUTABLE_IMAGE
IMAGE_FILE_LARGE_ADDRESS_AWARE
IMAGE_FILE_LINE_NUMS_STRIPPED
IMAGE_FILE_LOCAL_SYMS_STRIPPED
IMAGE_FILE_RELOCS_STRIPPED

Image Optional Header

Magic PE32
LinkerVersion 2.0
SizeOfCode 0x27a000
SizeOfInitializedData 0x89c00
SizeOfUninitializedData 0
AddressOfEntryPoint 0x0027AE44 (Section: .itext)
BaseOfCode 0x1000
BaseOfData 0x27c000
ImageBase 0x400000
SectionAlignment 0x1000
FileAlignment 0x200
OperatingSystemVersion 5.0
ImageVersion 0.0
SubsystemVersion 5.0
Win32VersionValue 0
SizeOfImage 0x53e000
SizeOfHeaders 0x400
Checksum 0
Subsystem IMAGE_SUBSYSTEM_WINDOWS_GUI
SizeofStackReserve 0x100000
SizeofStackCommit 0x4000
SizeofHeapReserve 0x100000
SizeofHeapCommit 0x1000
LoaderFlags 0
NumberOfRvaAndSizes 16

.text

MD5 9a28aa794315f91aeab2c8860e643c9e
SHA1 333a5787584b2bedf1dc2ddfebc03f679d724277
SHA256 c7d0bb7a2e7b7c09bd80c22fc7809e80d73bd8069acc51465d96c1e843017b87
SHA3 a0988975898100b384bcad78fa8834ea480cc2a5a20edf6daf9b64874cd9a50d
VirtualSize 0x272ab0
VirtualAddress 0x1000
SizeOfRawData 0x272c00
PointerToRawData 0x400
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_CODE
IMAGE_SCN_MEM_EXECUTE
IMAGE_SCN_MEM_READ
Entropy 6.48113

.itext

MD5 15f08a354a45100fad54bd05798d5619
SHA1 280486d41e2808cd4c806bea1d6a8c8f449ad61c
SHA256 ba77c46aa1f25f68518e18b7c3b7ccb1c55a935bf967a70147e87b66c9479585
SHA3 00838dbe3030c903857c93889ed9a8c2a08b6b2b251a1274cf5ab464ffedbef5
VirtualSize 0x7250
VirtualAddress 0x274000
SizeOfRawData 0x7400
PointerToRawData 0x273000
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_CODE
IMAGE_SCN_MEM_EXECUTE
IMAGE_SCN_MEM_READ
Entropy 5.2569

.data

MD5 af4d3088b0d5ae07f240efe74c887b18
SHA1 3c7f019b9411ed1fc8e8b26e6fb5b70cbda7bc1e
SHA256 12dc752f207fc01b05f87db55fbcf4228227b3a97da8c81c49c953435d46aa76
SHA3 1d4219362430cd3c0298ee89790a38745e59be91f9b843355585a62e9fa5f6b8
VirtualSize 0xd6c0
VirtualAddress 0x27c000
SizeOfRawData 0xd800
PointerToRawData 0x27a400
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
Entropy 5.42811

.bss

MD5 d41d8cd98f00b204e9800998ecf8427e
SHA1 da39a3ee5e6b4b0d3255bfef95601890afd80709
SHA256 e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA3 a7ffc6f8bf1ed76651c14756a061d662f580ff4de43b49fa82d80a4b80f8434a
VirtualSize 0x2042a0
VirtualAddress 0x28a000
SizeOfRawData 0
PointerToRawData 0x287c00
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE

.idata

MD5 3552049fa0ff6694fbecf2f4b13c72f3
SHA1 3f37bbbb3247baf00ce06f897e4459d6a3342268
SHA256 0ae2cbe8a79b3dd21de7af118bc7b616366669c6d09bd02a930b840c4e09e7d3
SHA3 ea24214008bbaa282b7d11bde5ac98a6568d67cc4e77544dc17e4db10152fe42
VirtualSize 0x43be
VirtualAddress 0x48f000
SizeOfRawData 0x4400
PointerToRawData 0x287c00
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
Entropy 5.22462

.didata

MD5 0167c970e2097f2a15029aea7091d221
SHA1 ac7b724a07e6e86ff6d88f51056dfc8617cdf4a3
SHA256 6ae217dc4d3120c978a336af9c42a5c67937cdae4865944b2efb635ae62b6019
SHA3 6f02d76c5cd94f5bb53ae9612df2a1f5d8275b263e69369957122bde05686521
VirtualSize 0x3a6
VirtualAddress 0x494000
SizeOfRawData 0x400
PointerToRawData 0x28c000
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
Entropy 3.6447

.tls

MD5 d41d8cd98f00b204e9800998ecf8427e
SHA1 da39a3ee5e6b4b0d3255bfef95601890afd80709
SHA256 e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA3 a7ffc6f8bf1ed76651c14756a061d662f580ff4de43b49fa82d80a4b80f8434a
VirtualSize 0x50
VirtualAddress 0x495000
SizeOfRawData 0
PointerToRawData 0x28c400
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE

.rdata

MD5 e8361a9690fa321bdcc7180401861e2e
SHA1 3a835151335a91f24d6b8b80b383caf80e00393c
SHA256 c94b780033819bd0c10312658402d8d28ae5f968eec9e21aa5567148049df738
SHA3 36abffddfab537a3075597d1f6cf819b31ee112f40a0bde3e750744ed3e587c0
VirtualSize 0x18
VirtualAddress 0x496000
SizeOfRawData 0x200
PointerToRawData 0x28c400
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 0.205446

.reloc

MD5 d41d8cd98f00b204e9800998ecf8427e
SHA1 da39a3ee5e6b4b0d3255bfef95601890afd80709
SHA256 e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA3 a7ffc6f8bf1ed76651c14756a061d662f580ff4de43b49fa82d80a4b80f8434a
VirtualSize 0x2e19c
VirtualAddress 0x497000
SizeOfRawData 0
PointerToRawData 0x28c600
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_DISCARDABLE
IMAGE_SCN_MEM_READ

.rsrc

MD5 51c1e7f877549f6e27c6adc2c24aee5f
SHA1 fd60acb9936f6348f17207b3c08c5ce9729aee53
SHA256 edb726e15666e6b8ef643bdb3fb74137dbd62c8c64794bbce92351e8f31888e3
SHA3 a0f7e502bc456550f68a154aa8a6e681ead8f7ab2965ada4803c7f0b2cf2e1fb
VirtualSize 0x77908
VirtualAddress 0x4c6000
SizeOfRawData 0x77a00
PointerToRawData 0x28c600
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 4.27269

Imports

oleaut32.dll SysFreeString
SysReAllocStringLen
SysAllocStringLen
advapi32.dll RegQueryValueExW
RegOpenKeyExW
RegCloseKey
user32.dll LoadStringW
MessageBoxA
CharNextW
kernel32.dll lstrcmpiA
LoadLibraryA
LocalFree
LocalAlloc
GetACP
Sleep
VirtualFree
VirtualAlloc
GetSystemInfo
GetTickCount
QueryPerformanceCounter
GetVersion
GetCurrentThreadId
VirtualQuery
WideCharToMultiByte
SetCurrentDirectoryW
MultiByteToWideChar
lstrlenW
lstrlenA
lstrcpynW
LoadLibraryExW
IsValidLocale
GetSystemDefaultUILanguage
GetStartupInfoA
GetProcAddress
GetModuleHandleW
GetModuleFileNameW
GetUserDefaultUILanguage
GetLocaleInfoW
GetLastError
GetCurrentDirectoryW
GetCommandLineW
FreeLibrary
FindFirstFileW
FindClose
ExitProcess
ExitThread
CreateThread
CompareStringW
WriteFile
UnhandledExceptionFilter
SetFilePointer
SetEndOfFile
RtlUnwind
ReadFile
RaiseException
MoveFileW
GetStdHandle
GetFileSize
GetFileType
DeleteCriticalSection
LeaveCriticalSection
EnterCriticalSection
InitializeCriticalSection
CreateFileW
CloseHandle
kernel32.dll (#2) lstrcmpiA
LoadLibraryA
LocalFree
LocalAlloc
GetACP
Sleep
VirtualFree
VirtualAlloc
GetSystemInfo
GetTickCount
QueryPerformanceCounter
GetVersion
GetCurrentThreadId
VirtualQuery
WideCharToMultiByte
SetCurrentDirectoryW
MultiByteToWideChar
lstrlenW
lstrlenA
lstrcpynW
LoadLibraryExW
IsValidLocale
GetSystemDefaultUILanguage
GetStartupInfoA
GetProcAddress
GetModuleHandleW
GetModuleFileNameW
GetUserDefaultUILanguage
GetLocaleInfoW
GetLastError
GetCurrentDirectoryW
GetCommandLineW
FreeLibrary
FindFirstFileW
FindClose
ExitProcess
ExitThread
CreateThread
CompareStringW
WriteFile
UnhandledExceptionFilter
SetFilePointer
SetEndOfFile
RtlUnwind
ReadFile
RaiseException
MoveFileW
GetStdHandle
GetFileSize
GetFileType
DeleteCriticalSection
LeaveCriticalSection
EnterCriticalSection
InitializeCriticalSection
CreateFileW
CloseHandle
user32.dll (#2) LoadStringW
MessageBoxA
CharNextW
msimg32.dll AlphaBlend
gdi32.dll UnrealizeObject
StretchDIBits
StretchBlt
StartPage
StartDocW
SetWindowOrgEx
SetWindowExtEx
SetWinMetaFileBits
SetViewportOrgEx
SetViewportExtEx
SetTextColor
SetStretchBltMode
SetROP2
SetPixel
SetMapMode
SetEnhMetaFileBits
SetDIBits
SetDIBColorTable
SetBrushOrgEx
SetBkMode
SetBkColor
SetAbortProc
SelectPalette
SelectObject
SelectClipRgn
SaveDC
RoundRect
RestoreDC
ResizePalette
Rectangle
RectVisible
RealizePalette
Polyline
Polygon
PolyPolyline
PolyBezierTo
PolyBezier
PlayEnhMetaFile
Pie
PatBlt
MoveToEx
MaskBlt
LineTo
LPtoDP
IntersectClipRect
GetWindowOrgEx
GetWinMetaFileBits
GetTextMetricsW
GetTextExtentPointW
GetTextExtentPoint32W
GetSystemPaletteEntries
GetStockObject
GetRgnBox
GetPixel
GetPaletteEntries
GetObjectType
GetObjectW
GetNearestPaletteIndex
GetGlyphOutlineW
GetEnhMetaFilePaletteEntries
GetEnhMetaFileHeader
GetEnhMetaFileDescriptionW
GetEnhMetaFileBits
GetDeviceCaps
GetDIBits
GetDIBColorTable
GetDCOrgEx
GetCurrentPositionEx
GetClipBox
GetBrushOrgEx
GetBitmapBits
GdiFlush
FrameRgn
ExtTextOutW
ExtFloodFill
ExtCreatePen
ExcludeClipRect
EnumFontsW
EnumFontFamiliesExW
EndPage
EndDoc
Ellipse
DeleteObject
DeleteEnhMetaFile
DeleteDC
CreateSolidBrush
CreateRectRgn
CreatePenIndirect
CreatePalette
CreateICW
CreateHalftonePalette
CreateFontIndirectW
CreateEnhMetaFileW
CreateDIBitmap
CreateDIBSection
CreateDCW
CreateCompatibleDC
CreateCompatibleBitmap
CreateBrushIndirect
CreateBitmap
CopyEnhMetaFileW
CombineRgn
CloseEnhMetaFile
Chord
BitBlt
Arc
AbortDoc
version.dll VerQueryValueW
GetFileVersionInfoSizeW
GetFileVersionInfoW
mpr.dll WNetGetConnectionW
kernel32.dll (#3) lstrcmpiA
LoadLibraryA
LocalFree
LocalAlloc
GetACP
Sleep
VirtualFree
VirtualAlloc
GetSystemInfo
GetTickCount
QueryPerformanceCounter
GetVersion
GetCurrentThreadId
VirtualQuery
WideCharToMultiByte
SetCurrentDirectoryW
MultiByteToWideChar
lstrlenW
lstrlenA
lstrcpynW
LoadLibraryExW
IsValidLocale
GetSystemDefaultUILanguage
GetStartupInfoA
GetProcAddress
GetModuleHandleW
GetModuleFileNameW
GetUserDefaultUILanguage
GetLocaleInfoW
GetLastError
GetCurrentDirectoryW
GetCommandLineW
FreeLibrary
FindFirstFileW
FindClose
ExitProcess
ExitThread
CreateThread
CompareStringW
WriteFile
UnhandledExceptionFilter
SetFilePointer
SetEndOfFile
RtlUnwind
ReadFile
RaiseException
MoveFileW
GetStdHandle
GetFileSize
GetFileType
DeleteCriticalSection
LeaveCriticalSection
EnterCriticalSection
InitializeCriticalSection
CreateFileW
CloseHandle
advapi32.dll (#2) RegQueryValueExW
RegOpenKeyExW
RegCloseKey
oleaut32.dll (#2) SysFreeString
SysReAllocStringLen
SysAllocStringLen
ole32.dll CreateStreamOnHGlobal
OleRegEnumVerbs
IsAccelerator
OleDraw
OleSetMenuDescriptor
OleUninitialize
OleInitialize
CoTaskMemFree
CoTaskMemAlloc
ProgIDFromCLSID
StringFromCLSID
CoCreateInstance
CoGetClassObject
CoUninitialize
CoInitialize
IsEqualGUID
comctl32.dll InitializeFlatSB
FlatSB_SetScrollProp
FlatSB_SetScrollPos
FlatSB_SetScrollInfo
FlatSB_GetScrollPos
FlatSB_GetScrollInfo
_TrackMouseEvent
ImageList_GetImageInfo
ImageList_SetIconSize
ImageList_GetIconSize
ImageList_Write
ImageList_Read
ImageList_GetDragImage
ImageList_DragShowNolock
ImageList_DragMove
ImageList_DragLeave
ImageList_DragEnter
ImageList_EndDrag
ImageList_BeginDrag
ImageList_Copy
ImageList_LoadImageW
ImageList_GetIcon
ImageList_Remove
ImageList_DrawEx
ImageList_Replace
ImageList_Draw
ImageList_SetOverlayImage
ImageList_GetBkColor
ImageList_SetBkColor
ImageList_ReplaceIcon
ImageList_Add
ImageList_SetImageCount
ImageList_GetImageCount
ImageList_Destroy
ImageList_Create
InitCommonControls
kernel32.dll (#4) lstrcmpiA
LoadLibraryA
LocalFree
LocalAlloc
GetACP
Sleep
VirtualFree
VirtualAlloc
GetSystemInfo
GetTickCount
QueryPerformanceCounter
GetVersion
GetCurrentThreadId
VirtualQuery
WideCharToMultiByte
SetCurrentDirectoryW
MultiByteToWideChar
lstrlenW
lstrlenA
lstrcpynW
LoadLibraryExW
IsValidLocale
GetSystemDefaultUILanguage
GetStartupInfoA
GetProcAddress
GetModuleHandleW
GetModuleFileNameW
GetUserDefaultUILanguage
GetLocaleInfoW
GetLastError
GetCurrentDirectoryW
GetCommandLineW
FreeLibrary
FindFirstFileW
FindClose
ExitProcess
ExitThread
CreateThread
CompareStringW
WriteFile
UnhandledExceptionFilter
SetFilePointer
SetEndOfFile
RtlUnwind
ReadFile
RaiseException
MoveFileW
GetStdHandle
GetFileSize
GetFileType
DeleteCriticalSection
LeaveCriticalSection
EnterCriticalSection
InitializeCriticalSection
CreateFileW
CloseHandle
ole32.dll (#2) CreateStreamOnHGlobal
OleRegEnumVerbs
IsAccelerator
OleDraw
OleSetMenuDescriptor
OleUninitialize
OleInitialize
CoTaskMemFree
CoTaskMemAlloc
ProgIDFromCLSID
StringFromCLSID
CoCreateInstance
CoGetClassObject
CoUninitialize
CoInitialize
IsEqualGUID
oleaut32.dll (#3) SysFreeString
SysReAllocStringLen
SysAllocStringLen
shell32.dll ShellExecuteW
shell32.dll (#2) ShellExecuteW
comdlg32.dll PrintDlgW
ChooseColorW
GetSaveFileNameW
GetOpenFileNameW
winspool.drv OpenPrinterW
EnumPrintersW
DocumentPropertiesW
ClosePrinter
winspool.drv (#2) OpenPrinterW
EnumPrintersW
DocumentPropertiesW
ClosePrinter
winmm.dll timeGetTime
mciSendStringW
mciSendCommandW
mciGetErrorStringW
joyGetPosEx
joyGetPos
timeBeginPeriod
d3d8.dll Direct3DCreate8
kernel32.dll (#5) lstrcmpiA
LoadLibraryA
LocalFree
LocalAlloc
GetACP
Sleep
VirtualFree
VirtualAlloc
GetSystemInfo
GetTickCount
QueryPerformanceCounter
GetVersion
GetCurrentThreadId
VirtualQuery
WideCharToMultiByte
SetCurrentDirectoryW
MultiByteToWideChar
lstrlenW
lstrlenA
lstrcpynW
LoadLibraryExW
IsValidLocale
GetSystemDefaultUILanguage
GetStartupInfoA
GetProcAddress
GetModuleHandleW
GetModuleFileNameW
GetUserDefaultUILanguage
GetLocaleInfoW
GetLastError
GetCurrentDirectoryW
GetCommandLineW
FreeLibrary
FindFirstFileW
FindClose
ExitProcess
ExitThread
CreateThread
CompareStringW
WriteFile
UnhandledExceptionFilter
SetFilePointer
SetEndOfFile
RtlUnwind
ReadFile
RaiseException
MoveFileW
GetStdHandle
GetFileSize
GetFileType
DeleteCriticalSection
LeaveCriticalSection
EnterCriticalSection
InitializeCriticalSection
CreateFileW
CloseHandle
wsock32.dll WSACleanup
WSAStartup
gethostname
gethostbyname
ddraw.dll DirectDrawCreate
Crypt32.dll CryptQueryObject
kernel32.dll (#6) lstrcmpiA
LoadLibraryA
LocalFree
LocalAlloc
GetACP
Sleep
VirtualFree
VirtualAlloc
GetSystemInfo
GetTickCount
QueryPerformanceCounter
GetVersion
GetCurrentThreadId
VirtualQuery
WideCharToMultiByte
SetCurrentDirectoryW
MultiByteToWideChar
lstrlenW
lstrlenA
lstrcpynW
LoadLibraryExW
IsValidLocale
GetSystemDefaultUILanguage
GetStartupInfoA
GetProcAddress
GetModuleHandleW
GetModuleFileNameW
GetUserDefaultUILanguage
GetLocaleInfoW
GetLastError
GetCurrentDirectoryW
GetCommandLineW
FreeLibrary
FindFirstFileW
FindClose
ExitProcess
ExitThread
CreateThread
CompareStringW
WriteFile
UnhandledExceptionFilter
SetFilePointer
SetEndOfFile
RtlUnwind
ReadFile
RaiseException
MoveFileW
GetStdHandle
GetFileSize
GetFileType
DeleteCriticalSection
LeaveCriticalSection
EnterCriticalSection
InitializeCriticalSection
CreateFileW
CloseHandle
Crypt32.dll (#2) CryptQueryObject
Crypt32.dll (#3) CryptQueryObject

Delayed Imports

CASE

Type UNICODEDATA
Language French - France
Codepage Latin 1 / Western European
Size 0xedc0
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.51536
MD5 96e9f308bfd868c479c7fd8e9d6ba597
SHA1 2bc75dfc0aed3307853979c753603859a8efff8d
SHA256 9ecbfaaa651402e78adcc68cd4dac6725ef859afd95dd8bf32f8a58309e8da9d
SHA3 a280d965c8a3e88e119e491bc4d3ded6f9ee87e39df88779a5d1169209c9255c

CATEGORIES

Type UNICODEDATA
Language French - France
Codepage Latin 1 / Western European
Size 0x7870
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 4.61662
MD5 d60840361711c3acca5d03632dc376c5
SHA1 a888d24d9e78b9333487cbbbabd35af05bf82563
SHA256 c8832f30b3ee52a56ab188e02f618662ea31f80c19a4294af367dac20fe88bab
SHA3 12fd707532b5d1e0367b688071748415eb6a731f60be2471e1419cbc0e3c10d1

COMBINING

Type UNICODEDATA
Language French - France
Codepage Latin 1 / Western European
Size 0x8d8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 4.06605
MD5 eff53143dce46b4a4e160532e95c8719
SHA1 f6512e4379e45d95c44ed759070011be1bb85c5d
SHA256 6faf42a5c9dc0310afd453192ef521756f5a51758dc656d1b28bd6d6c9733a84
SHA3 8368f2d9196227f4964f812bd74bb0fa14039d80a255a04ff55f48a38d193164

COMPOSITION

Type UNICODEDATA
Language French - France
Codepage Latin 1 / Western European
Size 0x3e84
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.15624
MD5 505c6088819d0c46d5e286ccea8fb4b7
SHA1 96e0b9155e0a4a320d43ea239bf4173bdcb92e12
SHA256 46550617022eee808cc725b97a21fb5523a4d1f9d60d4752eb813ff037698b06
SHA3 2c8e3ed5e4626414f430db9b29bef2f8571b15657d276d86b2d5ec875dcacc54

DECOMPOSITION

Type UNICODEDATA
Language French - France
Codepage Latin 1 / Western European
Size 0x7498
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.659
MD5 67a9c9a34e7de2fc54ac1c140f656a68
SHA1 f3d37c457031b7459b4fb55636bdada09abdbeaa
SHA256 1053f577d87e9a341c1908d76332855e7a26d422f738fd7efcaaae2fc35ba7c3
SHA3 252b65790fecf4dfb2e4ec40db2208a4fc13352e0be66de259f1a6a6914c84fb

NUMBERS

Type UNICODEDATA
Language French - France
Codepage Latin 1 / Western European
Size 0x20a0
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.42541
MD5 d36dabb137f0933963c0ea32f6dc0243
SHA1 b8b82f3c4c7287457d22167bab67af8f8534a705
SHA256 14d380c8ad4de83fe8dbc6b1e88a6ef5891d8b15e01208a8067be4509c895d86
SHA3 c41ab8178b83cd7d0a751e391a81e7815179107433a666fa58dbe9318db7195e

1

Type RT_ICON
Language English - United States
Codepage Latin 1 / Western European
Size 0xd28
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 4.74189
MD5 78e13a1d3a823280ecb484031120124d
SHA1 c87be14bff475cdffa6093b1a558d60e37373be2
SHA256 58f74d3b65bd267e8972993d00bc8494da4b70a0769392d5dddef2dd25d3e0d8
SHA3 eea71d346f49224fe99b844383e6d8f484c2f9c06bffc127a4e8a348b7676e1d

4054

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x1a8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.96758
MD5 46a56c7bae1ffd415f520ee7b9b14a32
SHA1 5919b5adb4580b2f3cfe3be3952bccf1a810a63d
SHA256 e11ccbd6c14ba2307ae4f563613018f7dc3de4f02044b25adbfa8f1a1fe9ea73
SHA3 3c54040263fcff9d05e1b5112722f8a4527eef35cc7a505e80077f1e76c5002c

4055

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x36c
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.414
MD5 9184ca81f4bb946fc2a56aa8b64f292c
SHA1 c26f1855d98d87e098fd8bef7d0334680af83cdc
SHA256 6853aeedde47c8044c7bf9e2acf6dd84ee0f16db9c47281df6e59dcc2ab0ba49
SHA3 a54d0f4085d0280afb12a6b98a0109680c8545290e85c2d8128844c8eed0fc3b

4056

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x6bc
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.26147
MD5 2cdfa124a34b3c417c5e76dcc89e35a2
SHA1 ef6c95ce49990851fcb182142497afc4ecbcae80
SHA256 5f856b228a69047a9739b7dedbbe1ae4309e53e8648d78eba39354c249ef99b8
SHA3 ce317c5ecc093e428a3e1ae51dc63202da04649a710db3dc67b367b95090343b

4057

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x2e4
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.34661
MD5 794d1d60135fe9cc0b0f4f715d190775
SHA1 155e70f5ce3cb33979c0021bba0299c5438f43c3
SHA256 30d48d9dc3dacd338f95a56b2062e8e8a62ae16783cec537d751e6fbf3ebe394
SHA3 f6b6f6ad80f0f2c0e94f1cbadca30729322f32a14b52a5e5f28570739528d59d

4058

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x264
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.34894
MD5 f1b81328b436dc372418f0c46846db5b
SHA1 43c50463627df4692cca0f9db25f0d5956a2870a
SHA256 8953700c73ae145a5fc03c6bd3f0b8294fcfac890c82e186a7028e22d48677fc
SHA3 552bdb71d5de32c7a90d59df82e4ea29feaeeb6d7fac019d54925afec26e3c73

4059

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x330
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.2422
MD5 4771335de1be3e873edbd037fdc904dc
SHA1 6748da3ed9977df844a2d093d6564c9b449772c2
SHA256 19d5a721c2d2eaac4afafa500cab28cd216e425a7c7b623a66ff7fa337b5c32f
SHA3 214b6eddc99d9c7d5a6cc85a1ffe86eda0a2f3280b4c3e4b4c2ef3c5e98c4f5e

4060

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x290
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.2853
MD5 fb85ce84ed5db5ad6cbb2239644c77af
SHA1 f94738f28d9f87f68a8c0a31de3239213508ef94
SHA256 0e81f46e3f279104e728eb9cf6c591cb364c8c8f462a930da785e4e05def4e74
SHA3 d99a2520898b2de33df77d7e9707de506c02ca9d7f6b00795ae1592e4c59d382

4061

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x464
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.35724
MD5 7599dec174747195dff2f7fb12ba8c46
SHA1 892fac00e12c51af0bf02c4b4dfc23d821b7575a
SHA256 0f112f3d33310e0edf01e715b332f4900b1b6828d445fcaca726088249dbf004
SHA3 04c0a51480d32f9db99edec984a0785cf2b209c9422407cd1b1eca19b4013e31

4062

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x7e8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.34734
MD5 2e17badf795c5d4f2e40b527213942b3
SHA1 45db03f59d19f942f02cbe917befdd68717bd22e
SHA256 04c5845f42b138b9f2878a4334df9750872219a11147c876dad0b33663440e98
SHA3 092fb572ad08e4aa3b5636932b35d973011d17a1a1a1c829e2a1122030c4721f

4063

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x898
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.23971
MD5 99a79bb51130533368b7a9c253376835
SHA1 9dfc5614487febe8abb1e9d9e80bbabbbcd6e923
SHA256 aa41d0055e045ef6db40c98e807e651152ef6e69bd87a3eb31ff52efc7e1ce64
SHA3 332599180415834fe2da218bf28833db4f817f8d9740e51792446509ccc905cd

4064

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x7b4
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.33028
MD5 7c8415fbd91c52fb7e18fde86676b3e3
SHA1 3f1e74a2d838fda21a141c94fa52d3c8bc87d5fd
SHA256 62154eb9d0a3dcad086ef568dcda7c15df58c967dcfe05f9aaa30bb25ba22200
SHA3 2975cf552ad2d3352ef9c4f4b3efa69fbf8fb747ce47966078bda67003b6c7fb

4065

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x920
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.23239
MD5 94b77c1cb25fc12fdd8e2fbcbec45aab
SHA1 aa9200f2f5eefe16607b4733e59e4e5f77ac8dc7
SHA256 9ab6f8205f37a8de975ee2203af7330997ca67eba6fdef85608e36460e65443e
SHA3 92080d3d43fa7ec1249a5efd9d98ab7fbb7aa0a304a2dfc12034cbd77efb253d

4066

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x9fc
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.22035
MD5 753280c2de1ed2eba76dff4433a2291f
SHA1 a4c620bcbd9ca0499c27b6eeb1be511ab22cd216
SHA256 0946d482942bea96d2b502a2f2d18c6f10eaf5c7ef009732409bf7b2947f2311
SHA3 7f594dbd8dcd03435434644dd02409b2b5d8ad1bdd5dc97056fde5a60fc1eedf

4067

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x4ac
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.36323
MD5 f02388774d034db8f7e62ba1dcaa1555
SHA1 4d6ef4df67e2ba50ae6d9ffc0ffce3c146646537
SHA256 7f7804067b04efe06626455f853dfaba203c0fb348923c7b626f8cb115470bd8
SHA3 5c14e14efb8739cf78ff3e8f5201c8de7413a9324ceed7e71aa9b6e2dadd6aee

4068

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x150
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.71998
MD5 475cb508e2aad57ed2e9d1889be24d6f
SHA1 c16d74a82ec4ec1aee581a3edc319723d2e48423
SHA256 ed4e0de73d870901a9a1f7cc9810e3a13145d5032addf398d5667538806c4ff7
SHA3 98b72f6776dc1b5fc1a50d86409052dd97f945d31a3342a88e9b1238255f2c97

4069

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x210
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.51581
MD5 a04b74e75243d53a009404e549ed0d8d
SHA1 c437a5c94539b1dc5dcf2ffb8854b97db01e3e0b
SHA256 f4131f3631bc35108445510bb1d9ca01752ff985aef70989f589f854e2ea63dc
SHA3 359edeca45707c2adbcf00378bfab5bd0311fccdaba764c3d09a175789d242b3

4070

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x214
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.42344
MD5 c14bf373090cc5bbfce76254cd69cc21
SHA1 b29e07aee5e4585480a92b84965428165b434b39
SHA256 cdc231d1806ad398e7a0d564871c374177fa5979bd20eae494595afac6d05d80
SHA3 68c21707effb510bdef865ccf9f510cacb1717c50546621f8f0bfa2bf25ab441

4071

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x224
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.37553
MD5 2c20265fa8c0acb709cab68c0140f505
SHA1 2b0d0ad0c4bb8b4e7b07b5825231ac52700d1f14
SHA256 d8f7bf02b6af76cd4811e5f35a8dfb90deb29f61dc779ae2c6b662c4533af24d
SHA3 db96a9ecb69e3bcd9320d8c40a3bf1b40ad457b16e1b9c10baded079fe3ec1c9

4072

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x160
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.49092
MD5 6cb55dbebe2e3bf660bdc5305e5d1843
SHA1 dd9fe1043aca9af5b849802d4adb55012d4e6ee2
SHA256 3641b432771ae4bb4695baf905daba391786ac3f7239568ad28b23cae8ddaf9d
SHA3 7be0ffc001ba1a36e7b895743667820a18b1e6f7ba8ae0ab2cfc5e138f4be694

4073

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x368
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.29251
MD5 4727454dc3ae6588d738626823b04fba
SHA1 b664c71c5e0b565f6c510e3ff324bf0840bc2fd5
SHA256 ebf28c43afd70daa266365bf52bed0db0b978b73f8810201a764bd837f3a6c78
SHA3 a6bdef39400563a34f339ca6ab9be544fc08ca8010a8fd16192fcc09bf708b4d

4074

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x24c
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.42081
MD5 29ac9f741c6d66761f655e1ac5367db2
SHA1 cec3349a8ec449f0364df009fd06fc468ab4a3f2
SHA256 8263bc889d146cb69ef1efdbe5ecdcbbfa346101aeb4a46199f1af63fbc2e59b
SHA3 95487bb1f65547bb971c85fa821d59b4e836feb05e55cb5cb67dd640a7cd8e21

4075

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x480
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.3087
MD5 abbd211c530b866fec7ab201d11d13ab
SHA1 bafe4de3de26bcfac34f9ad8fa692c4cec761200
SHA256 dc3d505fd26f7623edb5ed1464ad55e3cb4dafce45a0c1c8c28c766a2b5b31fc
SHA3 83ccdb1d34e245e02974f5fc9c2046f09c1992df35cef90192d4bb6dfdb3e71a

4076

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x78c
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.32097
MD5 6baf716b440c23344cb2039d696526a8
SHA1 670db711cffd33ab4128f6dc5e5548a5bddb1d64
SHA256 69d2d4ddf161622d069caec94de8685899968b967777f4ce922f9b434b3aaa02
SHA3 28affa96523ec56362a7ba1fb53425290e000cb709f71b2358300d8000f32da7

4077

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0xb7c
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.26812
MD5 6912e7c46ec64550affd3afc42291726
SHA1 7fbbbaa34807fad5e61b07a2e3c1c3eef16041d4
SHA256 34b6bd535ba820c9eec7c27a0c526d185243260f8102561608ac9212194ace33
SHA3 a1e5f5a4583f3fb15522d697a156c37bd68fcbfbd31333f93ea8f9a990a1ff8e

4078

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x3c0
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.30073
MD5 18fdb4c4054c6e411a9bab1c59315a47
SHA1 3cbe40c34e9bec355694c16dc79d18b72dfc12ae
SHA256 32eac5e5551d7b9ce0ccad13ca0b9cbacb2a64f0e694afa16f93629e34ac5ae8
SHA3 640d738ed2e49b6b6897622c85ae997d9742d408d643aaac89943a19a50e5c96

4079

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x34c
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.36162
MD5 51241735d312c8be949b708af4628820
SHA1 df7bbabcfdb12434d25eb7a245520cfe189caa89
SHA256 1a70e1a4eee89a604f757c038d51620cbbd1961940b81d0c3e25809b45f11dbb
SHA3 b32220d5b74a6e7fd4ffcdbad9aa40387b1c767fcf9a7792936362ef9caacb8e

4080

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x118
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.48794
MD5 fabf465ad47613e1de4fc0859bd1ddfb
SHA1 047fe9f72c7ea7c57c9e3d4af8962e6ef17ea0ab
SHA256 edb87fce5bb03a3a2a6bc189d67f35c65c36dcaa00e16d9c34245037a290f5aa
SHA3 5fc3858839496d3d05c9e35329fcc21c8013ef24a02e1c28ae820be0beb0d80a

4081

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0xd0
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.42557
MD5 a92a72ab6af91761f5850571a104c58f
SHA1 5069977a9054e7fd032f660808d5ede9a89301a1
SHA256 b18ebcdf8001b53acc35a530678c4663fae3ca91048dfcfb973fdb18295f67d0
SHA3 fbc98914f5a3093cd8b41e961e05d53b29658a5eee49102dd4090e4e64648880

4082

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x2cc
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.31467
MD5 82def795b106f5068ec728aca50c7bba
SHA1 daad93967953f67fa5d871f70a07aadf6505f4e8
SHA256 6ac07555b9c5a6c950524e3c686e872d707276b79a4164cc70cd86b34e023adc
SHA3 5f6d7b96421499de400e323d951d7eaade3c74bf3fd2823cc0cc36b3511af95c

4083

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x198
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.3624
MD5 c105a8318185a7b3ec10e0d4f6bbac2c
SHA1 ae6a1afacf946ce17f699bfac999c2c6ded45a88
SHA256 cc1a69d88e04dd0f3fdad74d2d0cf49db0238aff2955a2244ca8c6e7ff537c36
SHA3 08c260362dc67bedb1ba0672e33ec7a6fd52ceb4b39bb0e7412879f997b9836c

4084

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x3f4
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.28944
MD5 86a16bacc1127ab23ec2406ac8398b30
SHA1 e6bc7cedfa58564495574245517b40cb94b67487
SHA256 7e867748f40dd6f2b95c0a4f8f25269c6df379ca3824f089a1e8ee79a17be1ef
SHA3 42ce80f82c2e00cdef7f499d63f5c3007f629d1f9c58e69873f93de1df3900e9

4085

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x3ec
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.31324
MD5 bff1eac3ca6a9795cc23555d3a1db9b4
SHA1 481ac8e75d8052738f9eb66afa5d0e9d423ad9f3
SHA256 d9f5059648cc524a0ef89eaa2a6a03f615ce19512c749d071cd0bcff47852da2
SHA3 06b6e09d089a6cbd026ebb2250799525b86ba3d0e0ba29e734259088c9464290

4086

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x34c
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.25007
MD5 f16fec2c07887f8eabf995f3cb26d840
SHA1 026daad0723254043d9f6619afb183ded46d95ca
SHA256 d1cd50d059547cbde857a7c9a98d4bcad23aa66e210ca30a8b725b858c87708a
SHA3 e410abb73127b08cf3db20959020ff59f67fc70a664fe275719089f0dd236673

4087

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x408
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.24184
MD5 dd9ea352c8687be5d74848236904c406
SHA1 8f485e2b2f073c318cbbce7cc102162d5aa57ffa
SHA256 60b3f1c90c9318d1ba492dde3043eaf7e2e8cc9b9b03698cf682c0f3ad9e77e7
SHA3 ac77aea6fe980a95daa95d58e34a2cd6d84db2447d61b05527989f9c67e729c9

4088

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x3b0
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.26021
MD5 2bdcf10e83c813575f28d345ccc72772
SHA1 1bcb6dcb821ac722b199be466faa4a22e49819a3
SHA256 c410a48702ae81ca5da1f4b033cd2367fbf5e181072a27eda994bf6e7e5e00b0
SHA3 47cc09640480c6ec45dbc7d550da49deae62f44d52a3066ccded638cd8478ee2

4089

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x3f8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.32487
MD5 867da7e1625983a9c9bf346eabd73e89
SHA1 3549cb90e34982ebb9a21e527151a9b0e1a87cd6
SHA256 db86e5099baf7429e879f964c370a01915b83afc02b291fc98cc3ab6d11bae41
SHA3 ec8293d3ad3f4caa91db5d30c8349a89a9a41fd19d3d16900c1d8c1725cdfb60

4090

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x294
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.31876
MD5 05aac466108cba1969f9a6510aba3c72
SHA1 070a96f14cc9498439deceb0e73204e22b52389d
SHA256 edc392bafdab16101eb71952684c56dd46ca638aa8fd21261307048310103dbc
SHA3 c4d51beee51b944c3b5e46260ecce54daa722cdf4205526b1e7806d05a2ca546

4091

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0xc0
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.32529
MD5 ebe7a6edf341c034951539bdfb501217
SHA1 f3b12cb2c85fddc386f3adedc1da034b2100d2b4
SHA256 a0c1f98e0b294c71e3589083fbea354a488553806471e34b1214f53747954ef6
SHA3 a424730032c4802787dd839761ff1668cb9cfa773c5189a2f481e6522864ec33

4092

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x9c
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.1511
MD5 647f7ce8d5fafade23f9358618cd73d6
SHA1 24dea7a06aa3e22161fc20da3429dea7dcdc30ea
SHA256 5a729abba98dd3ddafa2235cf6cc4a8ab7c7e249e978d366858c19d7ced16a9c
SHA3 6e16ba8c9c0b21a9fd63469fd606ec2e50cb32483fa7973ec464ab3b0cb07869

4093

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x378
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.35181
MD5 3ecc593811d0c1caa683ac45b28ae76e
SHA1 12d55122040186d1f1c13288c48c27d6fa806973
SHA256 e84c2a46ef003c74b3e65c03d418cec5bb072cbf3ded77ffd5611a050b8c45b3
SHA3 f741aae51e8d5c39de2829410f677b6989855cff94997bf0e272ccc94bfec735

4094

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x4a8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.29442
MD5 0cd973bf953d35eb792f1b82f82a150f
SHA1 0a832a203f2b3e5a83b2b1400a5769b9b74f723f
SHA256 d8d5201aad53a9526c698e700dacb725fb696f1e6eacada25df76427d70f745f
SHA3 ab2f6f355948c4418b2ed24f0a09f8f0cf0c765887ed67700b8c6e82d5a7cb79

4095

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x314
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.36546
MD5 a118f4a4890b14660b46fe2f52f4fa07
SHA1 0e75e093bfba403bd69db2fccdd3361b18d3c634
SHA256 9814aeb1a94e4cc3ebf1e69223d4399e9e246e07183ab7a1e9b644af872bda16
SHA3 b6f9333ad01b680e516dc783c06e7278e17ed732c83ab1f0c9b213118be66dbd

4096

Type RT_STRING
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x2e0
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.30434
MD5 addabf3abf4894c7f459e545a5aca405
SHA1 2f025257981da80990519a4e8eade67187c7df14
SHA256 c6e879a69aa48053099ced5d7d94a50d012c08577b722af8dcf136e64fb46580
SHA3 9c1ce7fb521f511ffa40deeb6f114f4b7d94c4694df69e2c88da74d3ced0aae6

CHARTABLE

Type RT_RCDATA
Language English - United States
Codepage Latin 1 / Western European
Size 0x82e8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.5072
MD5 6e9c1c8c0a0ec8d73165779560cd7ba4
SHA1 d044c45e2ffd24e1abef00079577df385e325ab4
SHA256 677245e2a6b2eb5495b4965b8c26025a4b26e8b8c21a825f658cb390b493b9a0
SHA3 3ec7819e8561ecad66b1ef2652d4f3b275030f7cf402f276daa38f28d288e4e7

DVCLAL

Type RT_RCDATA
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x10
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 4
MD5 a40263c75fde7440b1086b7da9c51fc2
SHA1 139a84f87110fb5cb16a386adade21f30cae98b0
SHA256 e7dbe99baa5c1045cdf7004edb037018b2e0f639a5edcf800ec4514d5c8e35b5
SHA3 d3a734fa7d36868d301f9569de92e1bfc551e4b5cf6d7c59eace8d0a554093c0

PACKAGEINFO

Type RT_RCDATA
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0xd68
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 5.41073
MD5 2c6bebfa96ef97c4ff47b3a99f9af1b5
SHA1 9b1346382f52cf0927078a995dd54f39ba9ce118
SHA256 d835f535e0a2ced942947f057e6b19ef2019d71ea33dab4cc9e3d256c7135c1a
SHA3 0f9fd1c43bed9d56d8a3a23b99f444fcad860892c685822334f86129e3bcf066

TBETAFORM

Type RT_RCDATA
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x2db
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 5.76755
MD5 9fef86ac4633dcc8ec7cd9a6aeb013ad
SHA1 a7a3b58dc6f2d6a22962d4af46b4bc0e4beb6d03
SHA256 8068d3e99f1c1bc8371bf748db1ee712d5a6f22c232f31d7552824cd8a723a4a
SHA3 d002865a2db80efd7b451b142f90eb7a35b80c613a5db38ab590c7b2f3d7d98c

TDEBUGFORM

Type RT_RCDATA
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x48f5
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 4.20843
MD5 6b981c76566bf14f70145a75dc650444
SHA1 37a6b203ccfd218b74ae1c7ac879d5e3702a1fea
SHA256 80e80f9e1f05ad87bf4e4e73d77bb025cc89d49587d5da0e319ff97c83960d1a
SHA3 5a44b51a183ff9a2895eea36c2079befd7bbefde3abff84dfe80004ddab918fd

TDEBUGINFOFORM

Type RT_RCDATA
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x49e
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 5.42692
MD5 996b878cdb14685ffbc9d916c1636ee6
SHA1 85e8d6297631d1f38482966b34caa9029239510a
SHA256 c60b3b275e02442eff5491be9d8fceb91065504f52ae843e9be5c6bf8f7043f7
SHA3 9c7b8a5e6ae0221f69779ca93fe1dfa513f5d0026c68fd97485d80831f63033c

TERRORFORM

Type RT_RCDATA
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x158a
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 4.96844
MD5 6df325fa52ff0e9cc56d4cc76c1b35eb
SHA1 9334699e3092aed813185ee072b12ce86fd8b4a5
SHA256 c049703ca68a2b1afd02ff024980f3d3b99fcf68cee8742655c99834626a2cc7
SHA3 84ab430621998d39f36b6a588307412f0bebaa16e66a11ac25801a6b44b6d910

THELPFORM

Type RT_RCDATA
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x5b0
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 5.55468
MD5 ecde83b3172a3d468f6488405b8cd483
SHA1 58a381c25f0d3f72b272211afe611d8974eeb7a1
SHA256 866d4c90795974265bb720d93bd0201061ed09501ce656f2de7604b9de051824
SHA3 ff59fca05f3b121487be20525fbbaa5a351b9d1919e66cec67ab5513e13b07d9

TLITEEXITAD

Type RT_RCDATA
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x338
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 5.67758
MD5 a5f36e2f4b892e1503516914ea7c59d0
SHA1 6c2ccfabed0fe2fe3a762287673c3224551aec2b
SHA256 df993818205245f03e1d3127758182878073b7aecdb1abda91cd377874d08e6d
SHA3 47b7065446acc275a40eebb4ad7de799c9a0114c45c259497c18251dc0d9a7af

TLOADFORM

Type RT_RCDATA
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x2d1
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 5.44801
MD5 3383e3ccc67d52011741f1cbee02b2c5
SHA1 6294be05e852c0218b6e9f768543e4e0620786ee
SHA256 f2c903664e238c47c7c3a9995cc618387ef29a1fb6b5f0c4456d90cbbecdb8af
SHA3 126ba704c7738cecf34cce572eefa43fa7556b13f31423e15f527cd1376b2695

TLOGOFORM

Type RT_RCDATA
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x231
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 5.70532
MD5 ca7fb6e00f12b4d7ba28e3d0f54e313f
SHA1 327c881e3601086c46c8378016a804455fdbdd11
SHA256 50831312567459ca5e03dbded16e47ded6f7c96a695b4bfccd1bfe11e5eaeb9c
SHA3 af6ecfd7fd42587a8539d5a92d45521280b8be542c4aa3738cb581cd9a145839

TMESSAGEFORM

Type RT_RCDATA
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x8f57
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.08621
MD5 81659ef6f993321a25db2a37a965911e
SHA1 a945b989f2ae17714f9623be205663df91a8e88c
SHA256 b623d38f855210f5b93c55033dab1973f96b579a744be98b1c01e6a9c3ff433d
SHA3 7349b1eb112c8c97d04e2439941c5d2cafcf69bc51cd959f4d3c5ce8c91141b6

TPARTICLEFORM

Type RT_RCDATA
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x2a96d
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.28082
MD5 a79b557fbfac3e73d321e83344df1c39
SHA1 76f674f980e6ff9fb1093c829d8bbff0afae4550
SHA256 2eb962f76503a64347222b71467e59c56839aac04eabd56454fa209c678a612a
SHA3 ca0544e3d93f0cf6c05c9efd0be7da3a23f86cebb0f20bb48cfccdf22bb0124c

TRUNNERFORM

Type RT_RCDATA
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x275
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 5.42216
MD5 606e5b40bd149a2de5f7ec67eacd4d4e
SHA1 b84b4fd7483d66759f115080aa2cb84980d8931d
SHA256 f8e5e47b8ded7b50f6961a057f5cf8f831635fb1378fd4b03625192625331c28
SHA3 7f794b527ce97f5607f74120f97c1035335f20fea87505f4657d3f071b846344

TSCOREFORM

Type RT_RCDATA
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0x1fc8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 5.42742
MD5 31ae89dcd3f29cbcb265b348a2e39d4b
SHA1 56ac1f1f39af4bf75d34575040c6cc16a8f83db8
SHA256 674f21dea74c7d920d2914dce5d2bd5a4e3998871ffdce57fff6bcb3c53350aa
SHA3 947a90a5f5cff74bd3905a4b5a8313487619e59b3702797dd6254173c360d8b6

TSPLASHFORM

Type RT_RCDATA
Language UNKNOWN
Codepage Latin 1 / Western European
Size 0xab5
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 4.93507
MD5 2268c67663160dd61b5d1b7ee3f580be
SHA1 6ffcd568d6f5ae0b7537134337412a4a6faf7b22
SHA256 4f6881f10559fcbc4be0feb3023d84c2b264a1811a62c2d52b73f6864c011359
SHA3 084ced96d581d89619382d623bc1f61e533871ce771e3a5d51292b45bb11c702

MAINICON

Type RT_GROUP_ICON
Language English - United States
Codepage Latin 1 / Western European
Size 0x14
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 1.91924
Detected Filetype Icon file
MD5 e3995a8def93d0efeef9e02992e63d54
SHA1 5446f3d67e948069edff2f093a8bd6153e8938bb
SHA256 4e522aa5a09778625b9f1be6757426540fe1e130581c94407d8c9d354a5e7189
SHA3 06a977de57475a9949276be83fbadf75fff2b01f7ca63d056232e10fc9144d13

MAINICON (#2)

Type RT_GROUP_ICON
Language English - United Kingdom
Codepage Latin 1 / Western European
Size 0x14
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 1.7815
Detected Filetype Icon file
MD5 3c68f77c35c26ff079a1c410ee44fa62
SHA1 0b40150c95fc2c6414c90d44ee78b8d8814b3393
SHA256 a14e70ed824f3f17d3a51136aa08839954d6d3ccadaa067415c7bfc08e6636b0
SHA3 590dcbf2ec3f485a6c24e3e627f383ee7588eb49978321f12c07d8190a6c1396

1 (#2)

Type RT_VERSION
Language Dutch - Netherlands
Codepage Latin 1 / Western European
Size 0x484
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 1.92554
MD5 5ca101b4f4d88ea5127792e3b84c285a
SHA1 1f22d8358b6143cc0d4da286ab1d30f6ee231cbf
SHA256 40336471be508fc69dd96ee40f82d9976885baec032d265ad4338ca06eab68f4
SHA3 c82b30a737293fdb8396981ff11c38086e368f57b5e39de896376d08b6fae7b2

1 (#3)

Type RT_MANIFEST
Language English - United States
Codepage Latin 1 / Western European
Size 0x2f0
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 5.17015
MD5 e4c8a62db5113f6ecef8783d50f2f7f7
SHA1 3af0c70356976e15e7466aa0b39ebff654c02318
SHA256 6db2d03d69c169b420a447659d1b87487c4c1ed6acdd29fd0ff0499339c79d73
SHA3 d3525c8852a40d0763f57cc5611186ed68e94848ed2819546df4e22644a89442

String Table contents

License information for %s is invalid
License information for %s not found. You cannot use this control in design mode
Unable to retrieve a pointer to a running object registered with OLE for %s/%s
Preparing...
Loading data...
Upsampling...
Transfering...
LZ77 decompression error.
JPEG decompression error. Unexpected end of input.
Improper JPEG strip/tile size.
Improper JPEG component count.
Improper JPEG data precision.
Improper JPEG sampling factors.
Bogus JPEG tables field.
Fractional JPEG scanline unsupported.
Warning
'%s' is not a valid property value
OLE control activation failed
Could not obtain OLE control window handle
Cannot load image. Invalid or unexpected %s image format.
Invalid color format in %s file.
Stream read error in %s file.
Cannot load image. %s not supported for %s files.
Cannot load image. CRC error found in %s file.
Cannot load image. Compression error found in %s file.
Cannot load image. Extra compressed data found in %s file.
Cannot load image. Palette in %s file is invalid.
Cannot load PNG image. Unexpected but critical chunk detected.
The compression scheme is
Conversion between indexed and non-indexed pixel formats is not supported.
Color conversion failed. Could not find a proper method.
Color depth is invalid. Bits per sample must be 1, 2, 4, 8 or 16.
Sample count per pixel does not correspond to the given color scheme.
Subsampling value is invalid. Allowed are 1, 2 and 4.
Vertical subsampling value must be <= horizontal subsampling value.
ZSoft Paintbrush images
Word 5.x screen capture images
Alias/Wavefront images
SGI true color images with alpha
SGI black/white images
Photoshop images
Portable map images
Portable pixel map images
Portable gray map images
Portable bitmap images
Autodesk images
Kodak Photo-CD images
CompuServe images
Dr. Halo images
Paintshop Pro images
Portable network graphic images
Device independant Windows bitmaps
Encapsulated Postscript images
Windows icons
Windows metafiles
Windows enhanced meta files
JPG images
JPEG images
JPE images
JFIF images
Truevision images
Tagged image file format images
Macintosh TIFF images
PC TIF images
GFI fax images
SGI images
SGI true color images
oversubscribed literal/length tree
incomplete literal/length tree
empty distance tree with lengths
invalid block type
invalid stored block lengths
too many length or distance symbols
invalid bit length repeat
incorrect data check
unknown compression method
invalid window size
incorrect header check
need dictionary
All images
Attempt to register %s twice.
Windows bitmaps
Run length encoded Windows bitmaps
Cannot change the size of a JPEG image
JPEG error #%d
JPEG Image File
JPEG error #%d
need dictionary
stream end
file error
stream error
data error
insufficient memory
buffer error
incompatible version
invalid distance code
invalid literal/length code
oversubscribed dynamic bit lengths tree
incomplete dynamic bit lengths tree
Can not write to a read-only memory stream
Invalid MMF name "%s"
The MMF named "%s" cannot be created empty
File [%s] has not TD32 debug information!
Unexpected end of sequence
Library not found: %s
Function not found: %s.%s
This windows version is not supported
The window with handle %d is not valid
The process with ID %d is not valid
The Module with handle %d is not valid
OLE error %.8x
Method '%s' not supported by automation object
Variant does not reference an automation object
Dispatch methods do not support more than 64 parameters
DCOM not installed
2nd-level cache: 1 MBytes, 8-way associative, 32 byte line size
2nd-level cache: 2 MBytes, 8-way associative, 32 byte line size
2nd-level cache: 512 KByte, 4-way set associative, 64 byte line size
2nd-level cache: 1 MByte, 8-way set associative, 64 byte line size
Instruction TLB: 4 KByte pages, 4-way set associative, 128 entries
Instruction TLB: 2 MByte pages, 4-way, 8 entries or 4 MByte pages, 4-way, 4 entries
Instruction TLB: 4 KByte pages, 4-way set associative, 64 entries
Data TLB: 4 KByte pages, 4-way set associative, 128 entries
Data TLB1: 4 KByte pages, 4-way set associative, 256 entries
Data TLB1: 4 KByte pages, 4-way set associative, 64 entries
Data TLB: 4 KByte and 4 MByte pages, 4-way set associative, 8 entries
Shared 2nd-Level TLB: 4 KByte pages, 4-way associative, 512 entries
3rd-level cache: 8 MByte, 16-way set associative, 64 byte line size
64-Byte Prefetching
128-Byte Prefetching
CPUID leaf 2 does not report cache descriptor information, use CPUID leaf 4 to query cache parameters
1st-level data cache: 16 KBytes, 4-way set associative, 64 byte line size
1st-level data cache: 32 KBytes, 4-way set associative, 64 byte line size
Trace cache: 12 K-Ops, 8-way set associative
Trace cache: 16 K-Ops, 8-way set associative
Trace cache: 32 K-Ops, 8-way set associative
Trace cache: 64 K-Ops, 8-way set associative
2nd-level cache: 1 MBytes, 4-way set associative, 64 bytes line size
2nd-level cache: 128 KBytes, 8-way set associative, 64 bytes line size, 2 lines per sector
2nd-level cache: 256 KBytes, 8-way set associative, 64 bytes line size, 2 lines per sector
2nd-level cache: 512 KBytes, 8-way set associative, 64 bytes line size, 2 lines per sector
2nd-level cache: 1 MBytes, 8-way set associative, 64 bytes line size, 2 lines per sector
2nd-level cache: 2 MBytes, 8-way set associative, 64 byte line size
2nd-level cache: 512 KBytes, 2-way set associative, 64 byte line size
2nd-level cache: 512 KBytes, 8-way set associative, 64 byte line size
2nd-level cache: 256 KBytes, 8-way associative, 32 byte line size
2nd-level cache: 512 KBytes, 8-way associative, 32 byte line size
3rd-level cache: 16MByte, 16-way set associative, 64 byte line size
2nd-level cache: 6MByte, 24-way set associative, 64 byte line size
Instruction TLB: 4 KByte pages, 32 Entries
Instruction TLB: 4 KByte and 2 MByte or 4 MByte pages, 64 Entries
Instruction TLB: 4 KByte and 2 MByte or 4 MByte pages, 128 Entries
Instruction TLB: 4 KByte and 2 MByte or 4 MByte pages, 256 Entries
Instruction TLB: 2-MByte or 4-MByte pages, fully associative, 7 entries
Data TLB0: 4 MByte pages, 4-way set associative, 16 entries
Data TLB0: 4 KByte pages, 4-way associative, 16 entries
Data TLB0: 4 KByte pages, fully associative, 16 entries
Data TLB0: 2 MByte or 4 MByte pages, 4-way set associative, 32 entries
Data TLB: 4 KByte and 4 MByte pages, 64 Entries
Data TLB: 4 KByte and 4 MByte pages, 128 Entries
Data TLB: 4 KByte and 4 MByte pages, 256 Entries
1st-level data cache: 16 KByte, 8-way set associative, 64 byte line size
1st-level data cache: 8 KBytes, 4-way set associative, 64 byte line size
2nd-level cache: 256 KBytes, 4-way set associative, sectored cache, 64-byte line size
2nd-level cache: 384 KBytes, 6-way set associative, sectored cache, 64-byte line size
2nd-level cache: 512 KBytes, 4-way set associative, sectored cache, 64-byte line size
No 2nd-level cache or, if processor contains a valid 2nd-level cache, no 3rd-level cache
2nd-level cache: 128 KBytes, 4-way set associative, 32 byte line size
2nd-level cache: 256 KBytes, 4-way set associative, 32 byte line size
2nd-level cache: 512 KBytes, 4-way set associative, 32 byte line size
2nd-level cache: 1 MBytes, 4-way set associative, 32 byte line size
2nd-level cache: 2 MBytes, 4-way set associative, 32 byte line size
3rd-level cache: 4 MBytes, 4-way set associative, 64 byte line size
3rd-level cache: 8 MBytes, 4-way set associative, 64 byte line size
3rd-level cache: 8 MByte, 8-way set associative, 64 byte line size
2nd-level cache: 4 MBytes, 16-way set associative, 64 byte line size
3rd-level cache: 6MByte, 12-way set associative, 64 byte line size
3rd-level cache: 8MByte, 16-way set associative, 64 byte line size
3rd-level cache: 12MByte, 12-way set associative, 64 byte line size
1st level instruction cache: 32 KBytes, 4-way set associative, 64 byte line size
1st level data cache: 8 KBytes, 2-way set associative, 32 byte line size
Instruction TLB: 4 MByte pages, 4-way set associative, 4 entries
1st level data cache: 16 KBytes, 4-way set associative, 32 byte line size
1st level data cache: 16 KBytes, 4-way set associative, 64 byte line size
1st level data cache: 24 KBytes, 6-way set associative, 64 byte line size
2nd level cache: 256 KBytes, 8-way set associative, 64 byte line size
3rd level cache: 512 KBytes, 4-way set associative, 64 byte line size, 2 lines per sector
3rd level cache: 1 MBytes, 8-way set associative, 64 byte line size, 2 lines per sector
3rd level cache: 2 MBytes, 8-way set associative, 64 byte line size, 2 lines per sector
3rd level cache: 4 MBytes, 8-way set associative, 64 byte line size, 2 lines per sector
1st level data cache: 32 KBytes, 8-way set associative, 64 byte line size
1st level instruction cache: 32 KBytes, 8-way set associative, 64 byte line size
2nd-level cache: 128 KBytes, 4-way set associative, sectored cache, 64-byte line size
2nd-level cache: 192 KBytes, 6-way set associative, sectored cache, 64-byte line size
2nd-level cache: 128 KBytes, 2-way set associative, sectored cache, 64-byte line size
C++ Builder 4 or later
Delphi 4 or later
Main
Weak
OrgWeak
Implicit
Failed to create mutex
Failed to open mutex
Null descriptor
Instruction TLB: 4 KByte pages, 4-way set associative, 32 entries
Instruction TLB: 4 MByte pages, 4-way set associative, 2 entries
Data TLB: 4 KByte pages, 4-way set associative, 64 entries
Data TLB: 4 MByte pages, 4-way set associative, 8 entries
Data TLB1: 4 MByte pages, 4-way set associative, 32 entries
1st level instruction cache: 8 KBytes, 4-way set associative, 32 byte line size
1st level instruction cache: 16 KBytes, 4-way set associative, 32 byte line size
CODEVIEW
FPO
MISC
EXCEPTION
FIXUP
OMAP_TO_SRC
OMAP_FROM_SRC
Executable
Package
Library
NeverBuild
DesignOnly
RunOnly
IgnoreDupUnits
Delphi 3 or C++ Builder 3
Undefined
Version
GlobalFlagsClear
GlobalFlagsSet
CriticalSectionDefaultTimeout
DeCommitFreeBlockThreshold
DeCommitTotalFreeThreshold
LockPrefixTable
MaximumAllocationSize
VirtualMemoryThreshold
ProcessHeapFlags
ProcessAffinityMask
CSDVersion
Reserved
EditList
UNKNOWN
COFF
File Alignment
Operating System Version
Image Version
Subsystem Version
Win32 Version
Size of Image
Size of Headers
CheckSum
Subsystem
Dll Characteristics
Size of Stack Reserve
Size of Stack Commit
Size of Heap Reserve
Size of Heap Commit
Loader Flags
Number of RVA
Number of Sections
Time Date Stamp
Symbols Pointer
Number of Symbols
Size of Optional Header
Characteristics
Magic
Linker Version
Size of Code
Size of Initialized Data
Size of Uninitialized Data
Address of Entry Point
Base of Code
Base of Data
Image Base
Section Alignment
Imports
Resources
Exceptions
Security
Base Relocations
Debug
Description
Machine Value
TLS
Load configuration
Bound Import
IAT
Delay load import
COM run-time
Signature
Machine
Failed to get ANSI replacement character
Error illegal date or time format
Unknown function at %s
File contains no version information
Illegal language index
Failed to create FileMapping
Failed to create FileMappingView
Failed to obtain size of file
Stream is read-only
Cannot open file "%s"
This is not a PE format
Unknown PE target
Not a resource directory
Feature is not available for attached images
Section "%s" not found
Exports
Unsupported PixelFormat
Invalid image dimensions
Image has no DIB
Invalid stream operation
Color not in color table
Invalid Bits Per Pixel value
Color table is empty
Image is empty
Invalid reduction method
Loading...
Saving...
Converting...
Rendering...
Copying...
Optimizing...
Win32: %s (%u)
Invalid extension introducer
Failed to allocate memory for GIF DIB
Decoder bit buffer under-run
Circular decoder table entry
Invalid Image trailer
Internal error: Extension Instance does not match Extension Label
Unsupported Application Extension block size
Unknown GIF block type
Object type not supported for operation
Invalid GIF data
Image height too small for contained frames
Image width too small for contained frames
Clipboard operations not supported for GIF objects
Image exceeds Logical Screen size
No global or local color table defined
Invalid pixel coordinates
The program tried to add a existent critical chunk to the current image which is not allowed.
It's not allowed to add a new chunk because the current image is invalid.
The png image could not be loaded from the resource ID.
Some operation could not be performed because the system is out of resources. Close some windows and try again.
Setting bit transparency color is not allowed for png images containing alpha value for each pixel (COLOR_RGBALPHA and COLOR_GRAYSCALEALPHA)
This operation is not valid because the current image contains no valid header.
The new size provided for image resizing is invalid.
The "Portable Network Graphics" could not be created because invalid image type parameters have being provided.
Premature end of data
Color table overflow
Invalid color index
Unsupported GIF version
Invalid GIF signature
Invalid number of colors specified in Screen Descriptor
Invalid number of colors specified in Image Descriptor
Unknown extension type
Failed to Save Stream
This "Portable Network Graphics" image is not valid because it contains invalid pieces of data (crc error)
The "Portable Network Graphics" image could not be loaded because one of its main piece of data (ihdr) might be corrupted
This "Portable Network Graphics" image is invalid because it has missing image parts.
Could not decompress the image because it contains invalid compressed data.
Description:
The "Portable Network Graphics" image contains an invalid palette.
The file being read is not a valid "Portable Network Graphics" image because it contains an invalid header. This file may be corrupted, try obtaining it again
This "Portable Network Graphics" image is not supported or it might be invalid.
(IHDR chunk is not the first)
This "Portable Network Graphics" image is not supported because either it's width or height exceeds the maximum size, which is 65535 pixels length.
There is no such palette entry.
This "Portable Network Graphics" image contains an unknown critical part which could not be decoded.
This "Portable Network Graphics" image is encoded with an unknown compression scheme which could not be decoded.
This "Portable Network Graphics" image uses an unknown interlace scheme which could not be decoded.
The chunks must be compatible to be assigned.
This "Portable Network Graphics" image is invalid because the decoder found an unexpected end of the file.
This "Portable Network Graphics" image contains no data.
Docked control must have a name
Error removing control from dock tree
- Dock zone not found
- Dock zone has no control
Error loading dock zone from the stream. Expecting version %d, but found %d.
Separator
Error setting %s.Count
Listbox (%s) style must be virtual in order to set Count
"%s" is an invalid path
%s requires Windows Vista or later
%s requires themes to be enabled
Button%d
RadioButton%d
Caption cannot be empty
RichEdit line insertion error
Failed to Load Stream
The specified directory does not exist. Create it?
Select Directory
Directory &Name:
D&rives:
&Directories:
&Files: (*.*)
Ne&twork...
Invalid clipboard format
Clipboard does not support Icons
Cannot open clipboard: %s
Text exceeds memo capacity
Operation not supported on selected printer
There is no default printer currently selected
Menu '%s' is already being used by another form
No MCI device open
Unknown error code
PgDn
End
Home
Left
Up
Right
Down
Ins
Del
Shift+
Ctrl+
Alt+
Value must be between %d and %d
All files (*.*)|*.*
All
Unable to insert a line
OK
Cancel
&Help
&Abort
&Retry
&Ignore
&All
N&o to All
Yes to &All
&Close
BkSp
Tab
Esc
Enter
Space
PgUp
Bitmaps
TIFF Images
Grid too large for operation
Too many rows or columns deleted
Grid index out of range
Fixed column count must be less than column count
Fixed row count must be less than row count
Cannot insert or delete rows from grid
Invalid input value
Invalid input value. Use escape key to abandon changes
Warning
Error
Information
Confirm
&Yes
&No
Can only modify an image if it contains a bitmap
A control cannot have itself as its parent
OK
Cancel
&Yes
&No
&Help
&Close
&Ignore
&Retry
Abort
&All
Cannot drag a form
Metafiles
Enhanced Metafiles
Icons
Parent given is not a parent of '%s'
Cannot hide an MDI Child Form
Cannot change Visible in OnShow or OnHide
Cannot make a visible window modal
%s property out of range
Menu index out of range
Menu inserted twice
Sub-menu is not in menu
Not enough timers available
Printer is not currently printing
Printing in progress
Printer index out of range
Printer selected is not valid
%s on %s
GroupIndex cannot be less than a previous menu item's GroupIndex
Cannot create form. No MDI forms are currently active
Cannot change the size of a WIC Image
Invalid operation on TOleGraphic
Unknown picture file extension (.%s)
Unsupported clipboard format
Out of system resources
Canvas does not allow drawing
Invalid image size
Invalid ImageList
Unable to Replace Image
Invalid ImageList Index
Failed to read ImageList data from stream
Failed to write ImageList data to stream
Error creating window device context
Error creating window class
Cannot focus a disabled or invisible window
Control '%s' has no parent window
Invalid argument to time encode
No context-sensitive help installed
No help found for context
Unable to open Index
Unable to open Search
Unable to find a Table of Contents
No topic-based help system installed
No help found for %s
Argument out of range
Bitmap image is not valid
Icon image is not valid
Metafile is not valid
Invalid pixel format
Invalid image
Scan line index out of range
Cannot change the size of an icon
Stream write error
Thread creation error: %s
Thread Error: %s (%d)
Cannot terminate an externally created thread
Cannot wait for an externally created thread
Cannot call Start on a running or suspended thread
Parameter %s cannot be a negative value
Input buffer exceeded for %s = %d, %s = %d
The specified file was not found
?
No help viewer that supports filters
Invalid Timeout value: %s
''%s'' is not a valid date
''%s'' is not a valid date and time
''%s'' is not a valid integer value
''%s'' is not a valid time
List capacity out of bounds (%d)
List count out of bounds (%d)
List index out of bounds (%d)
Out of memory while expanding memory stream
%s has not been registered as a COM class
Error reading %s%s%s: %s
Stream read error
Property is read-only
Failed to create key %s
Failed to get data for '%s'
Failed to set data for '%s'
Resource %s not found
%s.Seek not implemented
Operation not allowed on sorted list
%s not in a class registration group
Property %s does not exist
Can't write to a read-only resource stream
CheckSynchronize called from thread $%x, which is NOT the main thread
Class %s not found
A class named %s already exists
List does not allow duplicates ($0%x)
A component named %s already exists
String list does not allow duplicates
Cannot create file "%s". %s
Cannot open file "%s". %s
Invalid file name - %s
Invalid stream format
''%s'' is not a valid component name
Invalid property value
Invalid property path
Invalid property value
Invalid data type for '%s'
Tuesday
Wednesday
Thursday
Friday
Saturday
Unable to create directory
Invalid source array
Invalid destination array
Character index out of bounds (%d)
Start index out of bounds (%d)
Invalid count (%d)
Invalid destination index (%d)
Invalid code page
Ancestor for '%s' not found
Cannot assign a %s to a %s
Bits index out of range
June
July
August
September
October
November
December
Sun
Mon
Tue
Wed
Thu
Fri
Sat
Sunday
Monday
Feb
Mar
Apr
May
Jun
Jul
Aug
Sep
Oct
Nov
Dec
January
February
March
April
May
Operation not supported
Unexpected variant error
External exception %x
Assertion failed
Interface not supported
Exception in safecall method
Object lock not owned
Monitor support function not initialized
%s (%s, line %d)
Abstract Error
Access violation at address %p in module '%s'. %s of address %p
Cannot access package information for package '%s'
Can't load package %s.
%s
System Error. Code: %d.
%s
A call to an OS function failed
Jan
Error creating variant or safe array
Variant or safe array index out of bounds
Variant or safe array is locked
Invalid variant type conversion
Invalid variant operation
Invalid NULL variant operation
Invalid variant operation (%s%.8x)
%s
Custom variant type (%s%.4x) is out of range
Custom variant type (%s%.4x) already used by %s
Custom variant type (%s%.4x) is not usable
Too many custom variant types have been registered
Could not convert variant of type (%s) into type (%s)
Overflow while converting variant of type (%s) into type (%s)
Variant overflow
Invalid argument
Invalid variant type
Floating point underflow
Invalid pointer operation
Invalid class typecast
Access violation at address %p. %s of address %p
Access violation
Stack overflow
Control-C hit
Privileged instruction
Operation aborted
Exception %s in module %s at %p.
%s%s
Application Error
Format '%s' invalid or incompatible with argument
No argument for format '%s'
Variant method calls not supported
Read
Write
'%s' is not a valid floating point value
'%s' is not a valid GUID value
Invalid argument to date encode
Out of memory
I/O error %d
Too many open files
File access denied
Read beyond end of file
Disk full
Invalid numeric input
Division by zero
Range check error
Integer overflow
Invalid floating point operation
Floating point division by zero
Floating point overflow

Version Info

Signature 0xfeef04bd
StructVersion 0x10000
FileVersion 1.0.0.0
ProductVersion 1.0.0.0
FileFlags (EMPTY)
FileOs VOS_DOS_WINDOWS32
VOS_NT_WINDOWS32
VOS__WINDOWS32
FileType VFT_APP
Language English - United States
CompanyName
FileDescription
FileVersion (#2) 1.0.0.0
InternalName
LegalCopyright
LegalTrademarks
OriginalFilename
ProductName
ProductVersion (#2) 1.0.0.0
Comments
Resource LangID Dutch - Netherlands

TLS Callbacks

StartAddressOfRawData 0x895000
EndAddressOfRawData 0x895050
AddressOfIndex 0x67ca28
AddressOfCallbacks 0x896010
SizeOfZeroFill 0
Characteristics IMAGE_SCN_TYPE_REG
Callbacks (EMPTY)

Load Configuration

RICH Header

Errors

[*] Warning: Could not read the name of the DLL to be delay-loaded! [*] Warning: directory 5 has a size of 0! This PE may have been manually crafted! [*] Warning: Section .bss has a size of 0! [*] Warning: Section .tls has a size of 0! [*] Warning: Section .reloc has a size of 0!
Leave a comment

No comments yet.