| Architecture |
IMAGE_FILE_MACHINE_I386
|
|---|---|
| Subsystem |
IMAGE_SUBSYSTEM_WINDOWS_GUI
|
| Compilation Date | 2012-Sep-10 04:15:03 |
| Detected languages |
English - United States
|
| Suspicious | Strings found in the binary may indicate undesirable behavior: |
Miscellaneous malware strings:
|
| Info | Cryptographic algorithms detected in the binary: | Uses constants related to MD5 |
| Suspicious | The PE is possibly packed. |
Unusual section name found: .exc
Unusual section name found: .asrc Unusual section name found: /0 Unusual section name found: _rwdseg Unusual section name found: _rwcseg Section .rsrc is both writable and executable. |
| Info | The PE contains common functions which appear in legitimate applications. |
[!] The program may be hiding some of its imports:
|
| Malicious | VirusTotal score: 3/70 (Scanned on 2026-08-04 11:59:48) |
CrowdStrike:
win/grayware_confidence_60% (D)
MaxSecure: Trojan.Malware.327908728.susgen TrellixENS: GenericRXWU-HX!9DAC30DDCA0A |
| MD5 | 9dac30ddca0af4f1a04d4d230534f729 🔍 |
|---|---|
| SHA1 | 35c1fe4b30d9e34e10e4c17980f8aa4efcc5c43a 🔍 |
| SHA256 | ace6df5938d95bebbad480ecb78c4ec5af9e0d04c3b3e3897417d05cd39830e8 🔍 |
| SHA3 | 0b61ef6c55771b72b53e6bfaf4c9a7bf832b485984dc4765304148cca2b4fc99 🔍 |
| SSDeep | 24576:otrSZlat4EQKhSFI1NvWM7axC7tpiCt90HhPuq1ihVCF2M1qrui6EbPjeW11Rda:oSrMXypP5nsfbHrnYk3DL0LJkHDqFw 🔍 |
| Imports Hash | 7278ef9dbf9d0ff66e2dc6b3a2cd6704 🔍 |
| e_magic | MZ |
|---|---|
| e_cblp | 0x90 |
| e_cp | 0x3 |
| e_crlc | 0 |
| e_cparhdr | 0x4 |
| e_minalloc | 0 |
| e_maxalloc | 0xffff |
| e_ss | 0 |
| e_sp | 0xb8 |
| e_csum | 0 |
| e_ip | 0 |
| e_cs | 0 |
| e_ovno | 0 |
| e_oemid | 0 |
| e_oeminfo | 0 |
| e_lfanew | 0x880 |
| Signature | PE |
|---|---|
| Machine |
IMAGE_FILE_MACHINE_I386
|
| NumberofSections | 14 |
| TimeDateStamp | 2012-Sep-10 04:15:03 |
| PointerToSymbolTable | 0 |
| NumberOfSymbols | 0 |
| SizeOfOptionalHeader | 0xe0 |
| Characteristics |
IMAGE_FILE_32BIT_MACHINE
IMAGE_FILE_EXECUTABLE_IMAGE
IMAGE_FILE_LARGE_ADDRESS_AWARE
IMAGE_FILE_LINE_NUMS_STRIPPED
IMAGE_FILE_LOCAL_SYMS_STRIPPED
|
| Magic | PE32 |
|---|---|
| LinkerVersion | 2.0 |
| SizeOfCode | 0x27d000 |
| SizeOfInitializedData | 0x7c000 |
| SizeOfUninitializedData | 0x31a000 |
| AddressOfEntryPoint | 0x00267BF0 (Section: .text) |
| BaseOfCode | 0x1000 |
| BaseOfData | 0x2b1000 |
| ImageBase | 0x400000 |
| SectionAlignment | 0x1000 |
| FileAlignment | 0x200 |
| OperatingSystemVersion | 1.0 |
| ImageVersion | 0.0 |
| SubsystemVersion | 4.0 |
| Win32VersionValue | 0 |
| SizeOfImage | 0x614000 |
| SizeOfHeaders | 0xe00 |
| Checksum | 0x2f905f |
| Subsystem |
IMAGE_SUBSYSTEM_WINDOWS_GUI
|
| SizeofStackReserve | 0x100000 |
| SizeofStackCommit | 0x1000 |
| SizeofHeapReserve | 0x100000 |
| SizeofHeapCommit | 0x1000 |
| LoaderFlags | 0 |
| NumberOfRvaAndSizes | 16 |
| MD5 | d999888af5216898518d2cac0398e969 🔍 |
|---|---|
| SHA1 | 6763ab6de76b9bbf9ffb0404a25b71794088165b 🔍 |
| SHA256 | 3085808a13901125cfceffa8fce45110efbbcd7bc55099d4a5ceaa207424a54e 🔍 |
| SHA3 | d9bd7ca9a20cf87876983b2ab5fdc586c642dd27fa9d89547534da15385ad8aa 🔍 |
| VirtualSize | 0x27d000 |
| VirtualAddress | 0x1000 |
| SizeOfRawData | 0x27ce00 |
| PointerToRawData | 0xc00 |
| PointerToRelocations | 0 |
| PointerToLineNumbers | 0 |
| NumberOfLineNumbers | 0 |
| NumberOfRelocations | 0 |
| Characteristics |
IMAGE_SCN_CNT_CODE
IMAGE_SCN_MEM_EXECUTE
IMAGE_SCN_MEM_READ
|
| Entropy | 6.46538 |
| MD5 | 697c9487badd81d8ae090ac46865910c 🔍 |
|---|---|
| SHA1 | c94d21e010f455175895c37e736f913d6420f7f6 🔍 |
| SHA256 | a2307c7825872ddf112acc8a1384822a5cbaed8902f1100f49a0224a437752ca 🔍 |
| SHA3 | e346fe0284a6bec60717a99b9a9518936bcb57fcde8955a2f1054be07374e5bc 🔍 |
| VirtualSize | 0x3000 |
| VirtualAddress | 0x27e000 |
| SizeOfRawData | 0x2200 |
| PointerToRawData | 0x27da00 |
| PointerToRelocations | 0 |
| PointerToLineNumbers | 0 |
| NumberOfLineNumbers | 0 |
| NumberOfRelocations | 0 |
| Characteristics |
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
|
| Entropy | 4.97158 |
| MD5 | 91ba547a0b6d32aa6cd6d801ab20573f 🔍 |
|---|---|
| SHA1 | d90e5bbd2265a545cbc5ac772d7223cd175a6a21 🔍 |
| SHA256 | c30f3738edf15b7492b5b4f22ad8bebf36497992d0be49980b90f9ec61e2e4d5 🔍 |
| SHA3 | 41e70fdf39f54e37409c81e610d9430e0cd3a69bdee2ac2ee44b839efd573f33 🔍 |
| VirtualSize | 0x1000 |
| VirtualAddress | 0x281000 |
| SizeOfRawData | 0x200 |
| PointerToRawData | 0x27fc00 |
| PointerToRelocations | 0 |
| PointerToLineNumbers | 0 |
| NumberOfLineNumbers | 0 |
| NumberOfRelocations | 0 |
| Characteristics |
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
|
| Entropy | 4.10448 |
| MD5 | 71b91f38d71dc0f0db7e8de784f50da3 🔍 |
|---|---|
| SHA1 | 231779d2544b651e848832508fbc205ec7ba8615 🔍 |
| SHA256 | d3e62abd4369db9c5be61c6159d96871de8143d98e28c50bab6356da4f1bbdaf 🔍 |
| SHA3 | 609718bb963dbda83380b3f3a98c9df2281d863d6a5f7d977ed916baf10a340a 🔍 |
| VirtualSize | 0x1000 |
| VirtualAddress | 0x282000 |
| SizeOfRawData | 0xc00 |
| PointerToRawData | 0x27fe00 |
| PointerToRelocations | 0 |
| PointerToLineNumbers | 0 |
| NumberOfLineNumbers | 0 |
| NumberOfRelocations | 0 |
| Characteristics |
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
|
| Entropy | 3.06336 |
| MD5 | 36012174634b5011a8d8433317c3585d 🔍 |
|---|---|
| SHA1 | 2e3d363807aa2e5402120312149217dc6687c422 🔍 |
| SHA256 | 0a6797cb6533984ad74f91b1e660f25e45ada52207a18736c71dfbce08048d95 🔍 |
| SHA3 | 36ec6973a50f1dac973558b5352d883f3acfdbe8e1db65b879848ef4d9fddde5 🔍 |
| VirtualSize | 0x5d000 |
| VirtualAddress | 0x283000 |
| SizeOfRawData | 0x5ca00 |
| PointerToRawData | 0x280a00 |
| PointerToRelocations | 0 |
| PointerToLineNumbers | 0 |
| NumberOfLineNumbers | 0 |
| NumberOfRelocations | 0 |
| Characteristics |
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
|
| Entropy | 5.31012 |
| MD5 | 2748b52a2e0e340df3b4edd232035aec 🔍 |
|---|---|
| SHA1 | 7d1241436758a0f1b6f3be2885ccca8b7f62a96d 🔍 |
| SHA256 | 89c87e78ebed79e6c20174a9066ac47da028e43489621806f92d2a83e0354f45 🔍 |
| SHA3 | e43c37ba19f36c3e6fff14f556d6bce1d05ccea4a3a429fe7ec599b367af4aed 🔍 |
| VirtualSize | 0x1000 |
| VirtualAddress | 0x2e0000 |
| SizeOfRawData | 0x200 |
| PointerToRawData | 0x2dd400 |
| PointerToRelocations | 0 |
| PointerToLineNumbers | 0 |
| NumberOfLineNumbers | 0 |
| NumberOfRelocations | 0 |
| Characteristics |
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
|
| Entropy | 3.7792 |
| MD5 | 005a6cece297bc31102054b7748e049d 🔍 |
|---|---|
| SHA1 | cd4a042c7150fb28e94a9fa173d9d4b0a164495c 🔍 |
| SHA256 | b8ea39f035df8da3891498f0ad7449a51e12cbd09d1b572dd0f642034f64f5af 🔍 |
| SHA3 | b59289b860634f0e4cfff54ab1fe0b72353e09254228e5f6291dadf2596899bf 🔍 |
| VirtualSize | 0x11000 |
| VirtualAddress | 0x2e1000 |
| SizeOfRawData | 0x10c00 |
| PointerToRawData | 0x2dd600 |
| PointerToRelocations | 0 |
| PointerToLineNumbers | 0 |
| NumberOfLineNumbers | 0 |
| NumberOfRelocations | 0 |
| Characteristics |
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
|
| Entropy | 6.60973 |
| MD5 | a4f74f1ebacc92c7eaff516ff4d0535e 🔍 |
|---|---|
| SHA1 | 663f77895f8135c459faa04dad443d9c7dc7e487 🔍 |
| SHA256 | a5f7d4d07291a456013c492043229ed5d76d875e847a7e0c450308f6f84593df 🔍 |
| SHA3 | 9c0b5d321da00ba63cbeb5816026b62ee291ca5806cec4bb7fce7407b8abd707 🔍 |
| VirtualSize | 0x2000 |
| VirtualAddress | 0x2f2000 |
| SizeOfRawData | 0x1600 |
| PointerToRawData | 0x2ee200 |
| PointerToRelocations | 0 |
| PointerToLineNumbers | 0 |
| NumberOfLineNumbers | 0 |
| NumberOfRelocations | 0 |
| Characteristics |
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
|
| Entropy | 5.45808 |
| MD5 | e3eef444706047e2e901d05e5a3ce576 🔍 |
|---|---|
| SHA1 | 1c0253c078325741728b9bc35ec0c01db3d745e6 🔍 |
| SHA256 | 6fcf263b33647da8daf36359df379973d9e5f1242cbbc66921358c2eafdf755c 🔍 |
| SHA3 | 904d4d9143f4de711cfe82441283e592e9302218ffd4585f59cb7e5a95814c2e 🔍 |
| VirtualSize | 0x1000 |
| VirtualAddress | 0x2f4000 |
| SizeOfRawData | 0x200 |
| PointerToRawData | 0x2ef800 |
| PointerToRelocations | 0 |
| PointerToLineNumbers | 0 |
| NumberOfLineNumbers | 0 |
| NumberOfRelocations | 0 |
| Characteristics |
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
|
| Entropy | 0.204488 |
| MD5 | bf619eac0cdf3f68d496ea9344137e8b 🔍 |
|---|---|
| SHA1 | 5c3eb80066420002bc3dcc7ca4ab6efad7ed4ae5 🔍 |
| SHA256 | 076a27c79e5ace2a3d47f9dd2e83e4ff6ea8872b3c2218f66c92b89b55f36560 🔍 |
| SHA3 | 622de1e1568ddef36c4b89b706b05201c13481c3575d0fc804ff8224787fcb59 🔍 |
| VirtualSize | 0x1000 |
| VirtualAddress | 0x2f5000 |
| SizeOfRawData | 0x200 |
| PointerToRawData | 0x2efa00 |
| PointerToRelocations | 0 |
| PointerToLineNumbers | 0 |
| NumberOfLineNumbers | 0 |
| NumberOfRelocations | 0 |
| Characteristics |
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
|
| Entropy | 0 |
| MD5 | 0f67d4273b1797da696e4d832f5fb489 🔍 |
|---|---|
| SHA1 | 4df6ed576cf003c29b13d1da80ac277f1a5a76a4 🔍 |
| SHA256 | 2a51a9c221082cd8f8376ac3443ddd686ece742a9c7211a7c8349dc036159d57 🔍 |
| SHA3 | cc66b522c11bf24ee68b51b87d50392f70d4b66762e95faafbc8a47f36f2d1f3 🔍 |
| VirtualSize | 0x1000 |
| VirtualAddress | 0x2f6000 |
| SizeOfRawData | 0x400 |
| PointerToRawData | 0x2efc00 |
| PointerToRelocations | 0 |
| PointerToLineNumbers | 0 |
| NumberOfLineNumbers | 0 |
| NumberOfRelocations | 0 |
| Characteristics |
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
|
| Entropy | 4.81218 |
| MD5 | d41d8cd98f00b204e9800998ecf8427e 🔍 |
|---|---|
| SHA1 | da39a3ee5e6b4b0d3255bfef95601890afd80709 🔍 |
| SHA256 | e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855 🔍 |
| SHA3 | a7ffc6f8bf1ed76651c14756a061d662f580ff4de43b49fa82d80a4b80f8434a 🔍 |
| VirtualSize | 0x319ba1 |
| VirtualAddress | 0x2f7000 |
| SizeOfRawData | 0 |
| PointerToRawData | 0 |
| PointerToRelocations | 0 |
| PointerToLineNumbers | 0 |
| NumberOfLineNumbers | 0 |
| NumberOfRelocations | 0 |
| Characteristics |
IMAGE_SCN_CNT_UNINITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
|
| MD5 | fd18f886cee5a5c8a07e3289b0fbc3ab 🔍 |
|---|---|
| SHA1 | 8749e637c2dcd479eee209339f37bcd6104bdead 🔍 |
| SHA256 | 3faf7d875e4ac0e137877a9bdd7a413e4a76a13fb67e68037bd33ca864f4fb41 🔍 |
| SHA3 | 00fdf909494ed4f48fdff4df516e553f3f51f40a288f94f64d4ad4a49bb74dcb 🔍 |
| VirtualSize | 0x1000 |
| VirtualAddress | 0x611000 |
| SizeOfRawData | 0x200 |
| PointerToRawData | 0x2f0000 |
| PointerToRelocations | 0 |
| PointerToLineNumbers | 0 |
| NumberOfLineNumbers | 0 |
| NumberOfRelocations | 0 |
| Characteristics |
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
|
| Entropy | 4.12259 |
| MD5 | d503247b0628d08e09e6ab895aca0687 🔍 |
|---|---|
| SHA1 | e151d4276388ceb2c4c0ad49a31d80d1591a9752 🔍 |
| SHA256 | 0dc81fab7903722a1bf450a3549d99a75a13a099632ef26007d02d4385d0da58 🔍 |
| SHA3 | b4c7362d7bd735793d607bdf038754107e1510fb79fa504c0ba5b012d4c2e03c 🔍 |
| VirtualSize | 0x2000 |
| VirtualAddress | 0x612000 |
| SizeOfRawData | 0x2000 |
| PointerToRawData | 0x2f0200 |
| PointerToRelocations | 0 |
| PointerToLineNumbers | 0 |
| NumberOfLineNumbers | 0 |
| NumberOfRelocations | 0 |
| Characteristics |
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_EXECUTE
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
|
| Entropy | 7.81635 |
| advapi32.dll |
RegOpenKeyExA
RegQueryValueExA RegCloseKey |
|---|---|
| ddraw.dll |
DirectDrawCreateEx
|
| dinput8.dll |
DirectInput8Create
|
| kernel32.dll |
SetLastError
CreateFileA CloseHandle WaitForSingleObject ReadFile GetLastError GetOverlappedResult SetFilePointer ReleaseSemaphore WaitForSingleObjectEx LocalFree GetFileSize GetDiskFreeSpaceA LocalAlloc CreateSemaphoreA CreateThread GetCurrentThread GetThreadPriority SetThreadPriority ResumeThread GetVersion OutputDebugStringA FindFirstFileA FindNextFileA FindClose lstrcpyA FileTimeToSystemTime GetDateFormatA QueryPerformanceCounter QueryPerformanceFrequency GetDriveTypeA GetCurrentDirectoryA MultiByteToWideChar GetModuleHandleA GetCommandLineA SetErrorMode GetSystemDefaultLCID GetUserDefaultLCID CreateDirectoryA GetVersionExA GlobalMemoryStatus LoadLibraryA GetProcAddress FreeLibrary GetLocalTime DeleteFileA EnterCriticalSection LeaveCriticalSection SetCurrentDirectoryA SetEnvironmentVariableA ExitProcess GetStartupInfoA TlsAlloc TlsFree TlsGetValue TlsSetValue WriteFile GetCurrentProcess DuplicateHandle InitializeCriticalSection GetStdHandle GetEnvironmentStrings FreeEnvironmentStringsA DeleteCriticalSection GlobalAlloc GlobalFree GetTimeZoneInformation |
| user32.dll |
ClientToScreen
SetCursorPos GetKeyState MapVirtualKeyA SystemParametersInfoA LoadIconA LoadCursorA RegisterClassA AdjustWindowRect CreateWindowExA SetWindowLongA SetWindowPos DestroyWindow ShowWindow UpdateWindow PeekMessageA TranslateMessage DispatchMessageA GetWindowPlacement WaitMessage ShowCursor GetClientRect SetFocus GetKeyboardLayout MessageBoxA SetCursor ReleaseCapture SendMessageA SetCapture ClipCursor PostQuitMessage DefWindowProcA MessageBoxW GetWindowRect AdjustWindowRectEx GetMenu GetWindowLongA IsIconic |
| winmm.dll |
timeGetDevCaps
timeBeginPeriod timeGetTime timeEndPeriod |
| wsock32.dll | (EMPTY) |
| d3d8.dll |
Direct3DCreate8
|
| mss32.dll |
_AIL_stream_status@4
_AIL_set_stream_volume@8 _AIL_set_stream_pan@8 _AIL_stream_ms_position@12 _AIL_pause_stream@8 _AIL_close_stream@4 _AIL_open_stream@12 _AIL_set_stream_loop_count@8 _AIL_set_stream_ms_position@8 _AIL_start_stream@4 _AIL_service_stream@8 _AIL_last_error@0 _AIL_end_sample@4 _AIL_3D_sample_status@4 _AIL_end_3D_sample@4 _AIL_start_sample@4 _AIL_start_3D_sample@4 _AIL_sample_status@4 _AIL_set_sample_loop_count@8 _AIL_set_3D_sample_loop_count@8 _AIL_set_sample_loop_block@12 _AIL_set_3D_sample_loop_block@12 _AIL_set_sample_playback_rate@8 _AIL_set_3D_sample_playback_rate@8 _AIL_set_sample_pan@8 _AIL_set_sample_volume@8 _AIL_set_3D_sample_distances@12 _AIL_set_3D_position@16 _AIL_set_3D_sample_volume@8 _AIL_set_sample_address@12 _AIL_set_3D_sample_info@8 _AIL_set_3D_sample_effects_level@8 _AIL_set_3D_provider_preference@12 _AIL_release_sample_handle@4 _AIL_release_3D_sample_handle@4 _AIL_close_3D_provider@4 _AIL_mem_free_lock@4 _AIL_close_digital_driver@4 _AIL_shutdown@0 _AIL_set_redist_directory@4 _AIL_startup@0 _AIL_set_preference@8 _AIL_open_digital_driver@16 _AIL_mem_alloc_lock@4 _AIL_allocate_sample_handle@4 _AIL_init_sample@4 _AIL_set_sample_type@12 _AIL_digital_handle_reacquire@4 _AIL_digital_handle_release@4 _AIL_set_3D_speaker_type@8 _AIL_open_3D_provider@4 _AIL_3D_room_type@4 _AIL_set_3D_room_type@8 _AIL_3D_provider_attribute@12 _AIL_allocate_3D_sample_handle@4 _AIL_enumerate_3D_providers@12 _AIL_set_file_callbacks@16 |
| ole32.dll |
CoInitialize
CoCreateInstance CoUninitialize |
| Ordinal | 1 |
|---|---|
| Address | 0x29bfa0 |
| Ordinal | 2 |
|---|---|
| Address | 0x29cb1c |
| Ordinal | 3 |
|---|---|
| Address | 0x29bf1c |
| Ordinal | 4 |
|---|---|
| Address | 0x29ca98 |
| Type |
RT_ICON
|
|---|---|
| Language | English - United States |
| Codepage | UNKNOWN |
| Size | 0x8a8 |
| TimeDateStamp | 1980-Jan-01 00:00:00 |
| Entropy | 3.21772 |
| MD5 | ecfaf5226e90967715bc6439b06c75f9 🔍 |
| SHA1 | cace9fae9e0d28ae362871148948166ddbc230c0 🔍 |
| SHA256 | c48642059d41f8e4b37cb7df34712b5c2e6b43bb6124a0a5ac16de98ba85d3a7 🔍 |
| SHA3 | 5f6b5a4c39ad78de95a3837c5c62efb3f811180d5f9b57c363730c169129a8f6 🔍 |
| Type |
RT_DIALOG
|
|---|---|
| Language | English - United States |
| Codepage | UNKNOWN |
| Size | 0x12e |
| TimeDateStamp | 1980-Jan-01 00:00:00 |
| Entropy | 3.32954 |
| MD5 | 9a220443f92ca143da52daff6743e1ea 🔍 |
| SHA1 | d2b0c16297f12df274916292df88e97545dd02cb 🔍 |
| SHA256 | 6a28cb628647fced9f6031d2211da974063bb2142af4c7bac05a49cd8c38c96d 🔍 |
| SHA3 | 22f19befb457931bbed9a3e9349038e8bef6551aa47742e8428b46282d4b895f 🔍 |
| Type |
RT_GROUP_ICON
|
|---|---|
| Language | English - United States |
| Codepage | UNKNOWN |
| Size | 0x14 |
| TimeDateStamp | 1980-Jan-01 00:00:00 |
| Entropy | 1.81924 |
| Detected Filetype | Icon file |
| MD5 | cbee427fa121aba9b9b265ff05de5383 🔍 |
| SHA1 | 24fcae33001c8e0f5ec795c6edf076a69d59589f 🔍 |
| SHA256 | 494e4fd717fa1ee0c5c7bb3b4e28fdab4b7f6e95b4f9865f5ab86f03f62ae62c 🔍 |
| SHA3 | a3fa35d56632275ba55716a4964f02031270f61f06a903fc460ac2dd6bebde85 🔍 |
| StartAddressOfRawData | 0x6f4000 |
|---|---|
| EndAddressOfRawData | 0x6f400c |
| AddressOfIndex | 0x6df9f0 |
| AddressOfCallbacks | 0x6df9f4 |
| SizeOfZeroFill | 0 |
| Characteristics |
IMAGE_SCN_TYPE_REG
|
| Callbacks | (EMPTY) |
No comments yet.