69690b7db2d44340a01a8887af3fb1f7b3c9321065370d647aba9be540e1c0af

Summary

Architecture IMAGE_FILE_MACHINE_I386
Subsystem IMAGE_SUBSYSTEM_WINDOWS_GUI
Compilation Date 2018-Dec-15 22:26:14
Detected languages English - United States
FileDescription
FileVersion 1.19.5
LegalCopyright Copyright Frogtek
ProductName Tiendatek
ProductVersion 1.19.5

Plugin Output

Info Interesting strings found in the binary: Contains domain names:
  • http://nsis.sf.net
  • http://nsis.sf.net/NSIS_Error
  • nsis.sf.net
Suspicious The PE is an NSIS installer Unusual section name found: .ndata
Malicious The PE contains functions mostly used by malware. [!] The program may be hiding some of its imports:
  • GetProcAddress
  • LoadLibraryExW
Can access the registry:
  • RegCreateKeyExW
  • RegOpenKeyExW
  • RegEnumValueW
  • RegDeleteKeyW
  • RegDeleteValueW
  • RegCloseKey
  • RegSetValueExW
  • RegQueryValueExW
  • RegEnumKeyW
Possibly launches other programs:
  • CreateProcessW
Can create temporary files:
  • GetTempPathW
  • CreateFileW
Functions related to the privilege level:
  • AdjustTokenPrivileges
  • OpenProcessToken
Changes object ACLs:
  • SetFileSecurityW
Can shut the system down or lock the screen:
  • ExitWindowsEx
Info The PE is digitally signed. Signer: Frogtek Espa\xC3\xB1a SL
Issuer: GlobalSign GCC R45 EV CodeSigning CA 2020
Safe VirusTotal score: 0/70 (Scanned on 2026-03-08 04:36:40) All the AVs think this file is safe.

Hashes

MD5 56efa77c74ff8be44789aa48112888ef
SHA1 7c181a4694f6830c84030c8c76243693a65dfa3a
SHA256 69690b7db2d44340a01a8887af3fb1f7b3c9321065370d647aba9be540e1c0af
SHA3 926f4ed566e75ef0fcd77ecade6a42821aeec7faf771809b49fc6a717c6aabbb
SSDeep 12288:bo3RK1DPNKT1zH3ptaR1sDfOQSvJqFZ6snJHCaVMxiL/4F:bo3M1Du173pG1szLSvJwxnJLVMxio
Imports Hash b34f154ec913d2d2c435cbd644e91687

DOS Header

e_magic MZ
e_cblp 0x90
e_cp 0x3
e_crlc 0
e_cparhdr 0x4
e_minalloc 0
e_maxalloc 0xffff
e_ss 0
e_sp 0xb8
e_csum 0
e_ip 0
e_cs 0
e_ovno 0
e_oemid 0
e_oeminfo 0
e_lfanew 0xd8

PE Header

Signature PE
Machine IMAGE_FILE_MACHINE_I386
NumberofSections 5
TimeDateStamp 2018-Dec-15 22:26:14
PointerToSymbolTable 0
NumberOfSymbols 0
SizeOfOptionalHeader 0xe0
Characteristics IMAGE_FILE_32BIT_MACHINE
IMAGE_FILE_EXECUTABLE_IMAGE
IMAGE_FILE_LINE_NUMS_STRIPPED
IMAGE_FILE_LOCAL_SYMS_STRIPPED
IMAGE_FILE_RELOCS_STRIPPED

Image Optional Header

Magic PE32
LinkerVersion 6.0
SizeOfCode 0x6800
SizeOfInitializedData 0x73800
SizeOfUninitializedData 0x4000
AddressOfEntryPoint 0x0000338F (Section: .text)
BaseOfCode 0x1000
BaseOfData 0x8000
ImageBase 0x400000
SectionAlignment 0x1000
FileAlignment 0x200
OperatingSystemVersion 4.0
ImageVersion 6.0
SubsystemVersion 4.0
Win32VersionValue 0
SizeOfImage 0x206000
SizeOfHeaders 0x400
Checksum 0xf9e03
Subsystem IMAGE_SUBSYSTEM_WINDOWS_GUI
DllCharacteristics IMAGE_DLLCHARACTERISTICS_DYNAMIC_BASE
IMAGE_DLLCHARACTERISTICS_NO_SEH
IMAGE_DLLCHARACTERISTICS_NX_COMPAT
IMAGE_DLLCHARACTERISTICS_TERMINAL_SERVER_AWARE
SizeofStackReserve 0x100000
SizeofStackCommit 0x1000
SizeofHeapReserve 0x100000
SizeofHeapCommit 0x1000
LoaderFlags 0
NumberOfRvaAndSizes 16

.text

MD5 7618d4c0cd8bb67ea9595b4266b3a91f
SHA1 0e5e99bb884a9fe9f4dee59b6bf9acf9746f3115
SHA256 ce82fa2004645edaffdd8fd1f54321b03658763348fada9402003d62f0ddff6b
SHA3 ccd8c869ba0ff281d15235e1af0a9750153fa0b82ccddbf9423a7d72c0b9dfae
VirtualSize 0x6627
VirtualAddress 0x1000
SizeOfRawData 0x6800
PointerToRawData 0x400
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_CODE
IMAGE_SCN_MEM_EXECUTE
IMAGE_SCN_MEM_READ
Entropy 6.45028

.rdata

MD5 eecac1fed9cc6b447d50940d178404d8
SHA1 0a0c2be86d54840b2eaa4abf2412bb3588e032c4
SHA256 76ef9b6bda1f3f0560eb03c72afb8b3862e70e5f091d9fd62ebb6905fa34a639
SHA3 56c4918c79f159b821216cd16db69ccb9c3fa8d4545f5f26f6b7902fedc4a3a9
VirtualSize 0x14a2
VirtualAddress 0x8000
SizeOfRawData 0x1600
PointerToRawData 0x6c00
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 5.02518

.data

MD5 db8f31a08a2242d80c29e1f9500c6527
SHA1 bdd9e7400edf5b4fddcffb66fcb1d3d83c8901da
SHA256 e2835b9de081782fa567c22333052e11d1632bff5697c817ae031f3201cd77da
SHA3 57418e3f956819c21cc21d25fc98b7a7422a73a7339f1ef395d9be8917eac41b
VirtualSize 0x70ff8
VirtualAddress 0xa000
SizeOfRawData 0x600
PointerToRawData 0x8200
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
Entropy 4.03712

.ndata

MD5 d41d8cd98f00b204e9800998ecf8427e
SHA1 da39a3ee5e6b4b0d3255bfef95601890afd80709
SHA256 e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA3 a7ffc6f8bf1ed76651c14756a061d662f580ff4de43b49fa82d80a4b80f8434a
VirtualSize 0x130000
VirtualAddress 0x7b000
SizeOfRawData 0
PointerToRawData 0
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_UNINITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE

.rsrc

MD5 a8de8664b1b43fb9a0559670c099eaed
SHA1 bef271d6b3ceaabff57179bb915d028785f76bc3
SHA256 ba5dcad5ea203289c002d51b74520b49b03da4342258add713e935aa209fb047
SHA3 b7390192c2c73238a2997f9c7b2a2fb9e9c28a4a319806a7a56da0423c44cb47
VirtualSize 0x5a540
VirtualAddress 0x1ab000
SizeOfRawData 0x5a600
PointerToRawData 0x8800
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 3.04727

Imports

KERNEL32.dll SetEnvironmentVariableW
SetFileAttributesW
Sleep
GetTickCount
GetFileSize
GetModuleFileNameW
GetCurrentProcess
CopyFileW
SetCurrentDirectoryW
GetFileAttributesW
GetWindowsDirectoryW
GetTempPathW
GetCommandLineW
GetVersion
SetErrorMode
lstrlenW
lstrcpynW
GetDiskFreeSpaceW
ExitProcess
GetShortPathNameW
CreateThread
GetLastError
CreateDirectoryW
CreateProcessW
RemoveDirectoryW
lstrcmpiA
CreateFileW
GetTempFileNameW
WriteFile
lstrcpyA
MoveFileExW
lstrcatW
GetSystemDirectoryW
GetProcAddress
GetModuleHandleA
GetExitCodeProcess
WaitForSingleObject
lstrcmpiW
MoveFileW
GetFullPathNameW
SetFileTime
SearchPathW
CompareFileTime
lstrcmpW
CloseHandle
ExpandEnvironmentStringsW
GlobalFree
GlobalLock
GlobalUnlock
GlobalAlloc
FindFirstFileW
FindNextFileW
DeleteFileW
SetFilePointer
ReadFile
FindClose
lstrlenA
MulDiv
MultiByteToWideChar
WideCharToMultiByte
GetPrivateProfileStringW
WritePrivateProfileStringW
FreeLibrary
LoadLibraryExW
GetModuleHandleW
USER32.dll GetSystemMenu
SetClassLongW
EnableMenuItem
IsWindowEnabled
SetWindowPos
GetSysColor
GetWindowLongW
SetCursor
LoadCursorW
CheckDlgButton
GetMessagePos
LoadBitmapW
CallWindowProcW
IsWindowVisible
CloseClipboard
SetClipboardData
EmptyClipboard
OpenClipboard
ScreenToClient
GetWindowRect
GetDlgItem
GetSystemMetrics
SetDlgItemTextW
GetDlgItemTextW
MessageBoxIndirectW
CharPrevW
CharNextA
wsprintfA
DispatchMessageW
PeekMessageW
ReleaseDC
EnableWindow
InvalidateRect
SendMessageW
DefWindowProcW
BeginPaint
GetClientRect
FillRect
DrawTextW
EndDialog
RegisterClassW
SystemParametersInfoW
CreateWindowExW
GetClassInfoW
DialogBoxParamW
CharNextW
ExitWindowsEx
DestroyWindow
GetDC
SetTimer
SetWindowTextW
LoadImageW
SetForegroundWindow
ShowWindow
IsWindow
SetWindowLongW
FindWindowExW
TrackPopupMenu
AppendMenuW
CreatePopupMenu
EndPaint
CreateDialogParamW
SendMessageTimeoutW
wsprintfW
PostQuitMessage
GDI32.dll SelectObject
SetBkMode
CreateFontIndirectW
SetTextColor
DeleteObject
GetDeviceCaps
CreateBrushIndirect
SetBkColor
SHELL32.dll SHGetSpecialFolderLocation
ShellExecuteExW
SHGetPathFromIDListW
SHBrowseForFolderW
SHGetFileInfoW
SHFileOperationW
ADVAPI32.dll AdjustTokenPrivileges
RegCreateKeyExW
RegOpenKeyExW
SetFileSecurityW
OpenProcessToken
LookupPrivilegeValueW
RegEnumValueW
RegDeleteKeyW
RegDeleteValueW
RegCloseKey
RegSetValueExW
RegQueryValueExW
RegEnumKeyW
COMCTL32.dll ImageList_Create
ImageList_AddMasked
ImageList_Destroy
#17
ole32.dll OleUninitialize
OleInitialize
CoTaskMemFree
CoCreateInstance

Delayed Imports

1

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x40028
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.8407
MD5 6b2589a60c6cdce8436a3ee7d532eb72
SHA1 5b5c24c8aeb421619958d206bdb0307e2c3cda9b
SHA256 f9455c3275fcb4ab66bfe6a0160c1ede88553f8f2aa0d9724e9eb2fc911e3de3
SHA3 7e5f1f9c7ece01846d17db17796d249680de6e15b07087b2be143384eed8704d

2

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x10028
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.06231
MD5 2452daac7156ef6a5977afd325b5c8a8
SHA1 22dbc8167d08b24422d80e4d4ea1e005b0ff64a3
SHA256 38fae1701360c6d3f53ad1b70557dd11abaceb624e99cc49b00ac926404fb84b
SHA3 48d314bc649662449565f29ee45b0ff3828bef3044f55e3601ea725a7aa354bd

3

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x4028
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.30643
MD5 20b57431877d8d197965f958c4f43496
SHA1 983fdcd40fe18cbcefaa5ea76722139dc02e6838
SHA256 8bd7f938f1f5bb2200970895615e4d28ace41e7cb2d28a54c79b6db74793274b
SHA3 8e14e198403f199b71aeebbdc29b1d63de906496a97489e18a1bb29834be6fe5

4

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x2428
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.37217
MD5 1ab89549c788b7e56e7d59b9ae8b4f40
SHA1 8fa37ae50bbccdc96d7d3ff8be90515b2e9ede31
SHA256 1dd76722249109c76b00abb55e7fdd09334301b76c4e2707994f9501fe5ab84a
SHA3 0590c8910f0fb7f81e4e2b9611c7650a5831ce348b725aef8d5497b1e5e3b496

5

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x1028
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.71023
MD5 0e7c82c69ac9b4bc830ae9b364945dbc
SHA1 707b078a5e6ae851f6e05905b0b492adc43c48a9
SHA256 28faea11a3653fe27e469baca2584415d03227e23c9898c60754b8bf1ec5c975
SHA3 3c8cceb3a769ea216fd28cf0413a11361a7543785c9c592ca34ef6663df00c8b

6

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x928
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.95849
MD5 f28070a579ee965d851fd2f7091d5e83
SHA1 f2042568b109ab12a390e9102835c3a481a3d3e9
SHA256 f2688ff0f808b930ee9ec270a04ecffc4002310b190e544111e17de5405d0916
SHA3 e0806f2f79292b81905bd65564225b67647a93e6aa721565b353d248e5664a28

7

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x428
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 4.32992
MD5 14d4f71c614041c383cd4611da08c7a6
SHA1 e013a75e7b42a071db172c5fac248b722e927d91
SHA256 1f8de7f0593532b61f7ebfcedd575a8295d465565b5188e6d03578a1ecc84ef2
SHA3 3018ed08602e0bf68e738a9b2cb27bcb7f564e6f06ce3b1b060a2ffceeb0aee4

105

Type RT_DIALOG
Language English - United States
Codepage UNKNOWN
Size 0x202
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.73893
MD5 386770584473e271f23dced36427f4ff
SHA1 d14ce95f784b35e4e3ebee535476ebcd3e380c19
SHA256 425b8270f7ca42a927eae6bea468acf414a3e4b58b5ba2c56aaae4d1b2c11014
SHA3 db13e5969376b27e8443eebff685230e2b74685aeb2fba73973f06e5cddc8662

106

Type RT_DIALOG
Language English - United States
Codepage UNKNOWN
Size 0xf8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.91148
MD5 fa83652660409e90e0db9731ad2adb17
SHA1 0a8f0af67723c87fe26ccf676b8e19ec6357b4dc
SHA256 4a55bd714f5d50cd8eabba10e57f0618f1842717dcfa582d73a917b1933cd1d4
SHA3 5b3e1cb25be7a2dbae4f08f0d4794ed23dbd6ea37a3f9702be12dba588f42a7b

111

Type RT_DIALOG
Language English - United States
Codepage UNKNOWN
Size 0xee
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.89887
MD5 663040d6315b1d6ce8c0334d182ed8fc
SHA1 ebcfff801a12fb8ad1200a4526fca8bd2c3e96cf
SHA256 cb3c86cbcb579244a6f819f9c1807a7e89b6e600982ec6ea0841fcdcb16a9efd
SHA3 6a25a2cb16aeb17693f10e8aaa0245c701701db571b458fde7830291a4a01cfc

205

Type RT_DIALOG
Language English - United States
Codepage UNKNOWN
Size 0x1fa
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.78574
MD5 2c1f44c0a248a53a50a661eb9a65cdcf
SHA1 69a0418cac4aaa30203faa1f0bdbe74fe1cc29c6
SHA256 1382f1e9260b7e203ceafc6936ef1dae48898fcf8fb04a446cd27a4384bc40c3
SHA3 2391f29b4bbdb35210160bdff0e5454a66809bd69915f6c5af5ec10cbbf057aa

206

Type RT_DIALOG
Language English - United States
Codepage UNKNOWN
Size 0xf0
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.04696
MD5 c7239ce55362dabbe3887e5fc4bdf5fe
SHA1 a2908207ffb889a12da3cbdbe7446e04b254e7ed
SHA256 012557f58e68234d4a88df0b713c59800f798ecce19dfd589d326b458dddcbd8
SHA3 34f4adf15b3169820de0c298735a1ea7bc4e5c9737c5baac458a5fbfb356b1f6

211

Type RT_DIALOG
Language English - United States
Codepage UNKNOWN
Size 0xe6
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.09674
MD5 30dab3583979c2008e8de9295ab7c36b
SHA1 186cd9560b358bbf8b523d1050573f22bb00264d
SHA256 8c64a2341dc473a7d8ab4956af589e9a7257c4f05a8dc229f862c16d49ba37e5
SHA3 4449f57b4725dc59d7d66dc9b817250112828d0f5d6b31cba247cd36ff544268

305

Type RT_DIALOG
Language English - United States
Codepage UNKNOWN
Size 0x1ee
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.68176
MD5 1cdff3870b4510f9c4a40874187787a2
SHA1 a7a0949b603bcbf6fdfe4a68eeba4c06cfda442b
SHA256 d542230218a67392c3e8d2c61f29f66f8724d837e83e9c0a49f30bdf02d722d7
SHA3 0ebf01d8f7e1f18047d7637f891d36fb662a028e2d4bbfd752c0cf4de4e50c9f

306

Type RT_DIALOG
Language English - United States
Codepage UNKNOWN
Size 0xe4
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.86295
MD5 cc0021533c65b44747600689ff5fbd43
SHA1 b1d1e4594f5ad7b08d56a25cdbe6d9b9378e482b
SHA256 ab1e3ad5b5d87630cb0f6a6671c10fe49d9c33839be0d5daeba89ec053dda92c
SHA3 84d6def5cee15efe0091dd2b0c1f1293ccd14684a0736bd33e1c5aa70c3471f7

311

Type RT_DIALOG
Language English - United States
Codepage UNKNOWN
Size 0xda
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.92694
MD5 408a7443d8f432b28a248059d8669d1c
SHA1 c199828e8051a2825b1d5e216360eb57cd0b37f7
SHA256 4677979c1665998318fcb65b9a0c0b3dd9204c12dbddbd5e76df8822ed6e347a
SHA3 a3fbf76ef107912c1222e3203143386903416d7d7c171d53f3e0988bea2e4923

405

Type RT_DIALOG
Language English - United States
Codepage UNKNOWN
Size 0x1ee
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.68733
MD5 c0c4f9be63c9d286b8d1265977ac9d86
SHA1 f9c0d915ded3ea188f342d0e5341e67701eed813
SHA256 349420ba5b5de0b0081e96a686c826e0f409f2f3413f2e9fb7e6f71cb544c325
SHA3 dce55e6d53e014b0786bba9e4f6c7d81ed0c04fde8279c3b54f7c2f5a9fe121a

406

Type RT_DIALOG
Language English - United States
Codepage UNKNOWN
Size 0xe4
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.86626
MD5 8c69d2c81dd2d9050d0fa94df90ff16b
SHA1 cd71d904da747d7141e5abdde9363f7e240b26bd
SHA256 1a39a3aabdee2aa68c507c55ff37c38722b05b7f8bde66185a2462792381d8cd
SHA3 b80b33ab6bf40b07bc32c7a6a11831084f7c97a27dff86d576769d0aab14b979

411

Type RT_DIALOG
Language English - United States
Codepage UNKNOWN
Size 0xda
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.9304
MD5 2497a44fff8b76b5129662b60a617c85
SHA1 f73bd7c9caa4c1f7a0e4840d69b0accdc6d167a0
SHA256 a10617b39293152a65ad5c91ca4f35135845c7b785e3a582e58f6c8229045b85
SHA3 aaf1dc708c305944a11a7180ef5ee2c8f722c3dd6d4bf91e0ae0f6c2b1a331ca

505

Type RT_DIALOG
Language English - United States
Codepage UNKNOWN
Size 0x1f2
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.74143
MD5 0af4d59488d775d20c2e6725f3ed95a9
SHA1 f7c55407fa28f7d3eb8f6a4d4b988947f57c4c4a
SHA256 ab979c8f6052af662e37a55c3aa42a884f0ce537317ce85f25d6c2307eb198f5
SHA3 cbd4ee359d3f62e7dfb156ecd5dcd05351e2728ee88efb928161a5f2b62fd5c3

506

Type RT_DIALOG
Language English - United States
Codepage UNKNOWN
Size 0xe8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.96511
MD5 c33758ab32a791644973dfd60cbf6034
SHA1 ee7eb0a27279d39a959f5d35b6dfd4c18c7123fa
SHA256 6e7bca0054a1785929747807906d8527c2c2a231ca5975d8ebb3a3f98353f129
SHA3 8883e9e9fe2e8e33f0c0a0dcb5c13456e825a62100aa3e10099e225770ecc9ff

511

Type RT_DIALOG
Language English - United States
Codepage UNKNOWN
Size 0xde
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.03655
MD5 2802ee53bc08ac9a2cfaed81b3d79d05
SHA1 b7faac6a14545ea9c03651f69ae27cce0e62b010
SHA256 65fb71b054977a55435f45bbcddddedaa1e1cf43fdd9fc230938d625c3f7edcd
SHA3 1b03466617102ef078d2690bf5a361563eae8b960554205937f87a6c81d328c5

605

Type RT_DIALOG
Language English - United States
Codepage UNKNOWN
Size 0x202
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.03251
MD5 16e4e392aaffaa0ee7e77b5be867e10f
SHA1 f7f681d8ec7c8a1aaa98b7a1d6bf14cfe730bbec
SHA256 699e0b19b7a5592c6cd94847130b28d57bf86ea61019043b9a6a3c88e6debc3d
SHA3 e91dc6b4bb438e908867a57a350a8f08d1116bc10d1694ba284a5a44360277b3

606

Type RT_DIALOG
Language English - United States
Codepage UNKNOWN
Size 0xf8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.10966
MD5 1ffe62afd7fe045c34a23ea5c9c7eb22
SHA1 ac211007f1f7a65d868d6e9e658d5ff26dec9c8e
SHA256 184073a317c843cbe92b68cfacebcf5d73dedb538b3f79c048090f3ee5b614ff
SHA3 f34fe335d0a39aedd236cfe40879f6624bc468df8195f5360c1d7267f2bd0113

611

Type RT_DIALOG
Language English - United States
Codepage UNKNOWN
Size 0xee
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.06584
MD5 7ce8a17102daebb8d864cd1063e987d1
SHA1 072345a235d4947d36b53fd47da68e7e6a93fe62
SHA256 0fd40b240b9df8f2dece8947dabbebce898f12becca8e196136e4231efba2dc1
SHA3 59c7281c1d6dca36fed8a44ee5b408f11090812626d5c5fe1da3d72b526208ab

103

Type RT_GROUP_ICON
Language English - United States
Codepage UNKNOWN
Size 0x68
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.64621
Detected Filetype Icon file
MD5 c6417a9a430b75c5263fb8081f317584
SHA1 2e6c2b543f8a35b9072ab3cacd46eb413529f3e5
SHA256 0933192e1ef4e5acac5589f71e28254f79fc45f5d721d7d1ca6648140803383d
SHA3 f835cd7fb4bed2f220da0c23272fc2f25d3cca38e53f517e254222d6a8348495

1 (#2)

Type RT_VERSION
Language English - United States
Codepage UNKNOWN
Size 0x1e8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.20835
MD5 42dcd2f55e560c3a75028266c420f7f6
SHA1 24f3d47cc4edf1059707cb16d52e6deafb5779a4
SHA256 075717c8fb6dab2de501641e1d9e635266bbb3035166f36d0a511666105f9646
SHA3 2a7ed4210d36516baa39bc04f51ee01de18b424359e793ee56f6ded9c3da0d99

1 (#3)

Type RT_MANIFEST
Language English - United States
Codepage UNKNOWN
Size 0x423
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 5.29611
MD5 87d4fc207e2f334ede55ac9160602c94
SHA1 32b9b90a524d4a352d4bf719a0c8367534b7465d
SHA256 e4039327090739a6754db86ef1704a8a07115ceb11719c0987a9d00a77a77f16
SHA3 2aee41e621180606b743045a0aa710f5b4988e35a00a353a245493ab66a42fef

Version Info

Signature 0xfeef04bd
StructVersion 0
FileVersion 1.19.5.0
ProductVersion 1.19.5.0
FileFlags (EMPTY)
FileOs VOS_DOS_WINDOWS32
VOS_NT_WINDOWS32
VOS__WINDOWS32
FileType VFT_APP
Language English - United States
FileDescription
FileVersion (#2) 1.19.5
LegalCopyright Copyright Frogtek
ProductName Tiendatek
ProductVersion (#2) 1.19.5
Resource LangID English - United States

TLS Callbacks

Load Configuration

RICH Header

XOR Key 0xd26650e9
Unmarked objects 0
C objects (VS2003 (.NET) build 4035) 2
Total imports 165
Imports (VS2003 (.NET) build 4035) 15
48 (9044) 10
Resource objects (VS98 SP6 cvtres build 1736) 1

Errors

[*] Warning: Section .ndata has a size of 0!
Leave a comment

No comments yet.