| Architecture |
IMAGE_FILE_MACHINE_I386
|
| Subsystem |
IMAGE_SUBSYSTEM_WINDOWS_GUI
|
| Compilation Date |
1992-Jun-19 22:22:17
|
| Detected languages |
English - United States
|
| Comments |
This installation was built with Inno Setup.
|
| CompanyName |
A-Developer1412
|
| FileDescription |
HTTP Proxy Injector Setup
|
| FileVersion |
|
| LegalCopyright |
|
| ProductName |
HTTP Proxy Injector
|
| ProductVersion |
0.0.0.8
|
| Suspicious |
Strings found in the binary may indicate undesirable behavior: |
Looks for Qemu presence:
Contains domain names:
- http://www.jrsoftware.org
- http://www.jrsoftware.org/ishelp/index.php?topic
- jrsoftware.org
- www.jrsoftware.org
|
| Malicious |
The PE contains functions mostly used by malware. |
[!] The program may be hiding some of its imports:
- LoadLibraryA
- GetProcAddress
Can access the registry:
- RegQueryValueExA
- RegOpenKeyExA
- RegCloseKey
Possibly launches other programs:
Memory manipulation functions often used by packers:
- VirtualAlloc
- VirtualProtect
Functions related to the privilege level:
- OpenProcessToken
- AdjustTokenPrivileges
Can shut the system down or lock the screen:
|
| Suspicious |
The file contains overlay data. |
17398867 bytes of data starting at offset 0x22400.
The overlay data has an entropy of 7.99999 and is possibly compressed or encrypted.
Overlay data amounts for 99.2001% of the executable.
|
| Malicious |
VirusTotal score: 6/67 (Scanned on 2022-04-26 21:57:49) |
Comodo:
Malware@#h0jxre7q4t8h
Ikarus:
Trojan-Spy.MSIL
MAX:
malware (ai score=75)
Rising:
PUF.Pack-Enigma!1.BA33 (CLOUD)
VBA32:
TScope.Malware-Cryptor.SB
Yandex:
Trojan.GenAsa!KAnN0UlXXw8
|
| MD5 |
0ae0b12f0e4bd2d99cdc7dc1be4d6731
|
| SHA1 |
92699e757f1a492146f467c5231c720c43e25845
|
| SHA256 |
ddfeaa890c31f3522797306eadb53fada272082d0a19b26fe0a1439aa30b00fe
|
| SHA3 |
94c20d1f20befa2889ed54bd2efd8bcd8e0de610ed7d8275e462a49893c417c7
|
| SSDeep |
393216:oqbU3SENTBZ2vqg9oRNtJ8Hpxk2y3L6/n/E+vGeqGbXAl6lrF:oqqVZg90Wpxk1O//E+qgAlAF
|
| Imports Hash |
4fb639b17a439bf0efa713bd4c6e715b
|
| e_magic |
MZ
|
| e_cblp |
0x50
|
| e_cp |
0x2
|
| e_crlc |
0
|
| e_cparhdr |
0x4
|
| e_minalloc |
0xf
|
| e_maxalloc |
0xffff
|
| e_ss |
0
|
| e_sp |
0xb8
|
| e_csum |
0
|
| e_ip |
0
|
| e_cs |
0
|
| e_ovno |
0x1a
|
| e_oemid |
0
|
| e_oeminfo |
0
|
| e_lfanew |
0x100
|
| Signature |
PE
|
| Machine |
IMAGE_FILE_MACHINE_I386
|
| NumberofSections |
8
|
| TimeDateStamp |
1992-Jun-19 22:22:17
|
| PointerToSymbolTable |
0
|
| NumberOfSymbols |
0
|
| SizeOfOptionalHeader |
0xe0
|
| Characteristics |
IMAGE_FILE_32BIT_MACHINE
IMAGE_FILE_BYTES_REVERSED_HI
IMAGE_FILE_BYTES_REVERSED_LO
IMAGE_FILE_EXECUTABLE_IMAGE
IMAGE_FILE_LINE_NUMS_STRIPPED
IMAGE_FILE_LOCAL_SYMS_STRIPPED
IMAGE_FILE_RELOCS_STRIPPED
|
| Magic |
PE32
|
| LinkerVersion |
2.0
|
| SizeOfCode |
0x9e00
|
| SizeOfInitializedData |
0x18200
|
| SizeOfUninitializedData |
0
|
| AddressOfEntryPoint |
0x0000A5F8 (Section: CODE)
|
| BaseOfCode |
0x1000
|
| BaseOfData |
0xb000
|
| ImageBase |
0x400000
|
| SectionAlignment |
0x1000
|
| FileAlignment |
0x200
|
| OperatingSystemVersion |
1.0
|
| ImageVersion |
6.0
|
| SubsystemVersion |
4.0
|
| Win32VersionValue |
0
|
| SizeOfImage |
0x29000
|
| SizeOfHeaders |
0x400
|
| Checksum |
0
|
| Subsystem |
IMAGE_SUBSYSTEM_WINDOWS_GUI
|
| DllCharacteristics |
IMAGE_DLLCHARACTERISTICS_TERMINAL_SERVER_AWARE
|
| SizeofStackReserve |
0x100000
|
| SizeofStackCommit |
0x4000
|
| SizeofHeapReserve |
0x100000
|
| SizeofHeapCommit |
0x1000
|
| LoaderFlags |
0
|
| NumberOfRvaAndSizes |
16
|
| MD5 |
c3bd95c4b1a8e5199981e0d9b45fd18c
|
| SHA1 |
2dc455018195cdf209f64bf29ffde4117116b387
|
| SHA256 |
c5208a3c758d042ab6484a0eb1acf2e194eab8e6ac61620d728a7a18a801f44b
|
| SHA3 |
ca35b076e7c116920a56e2556ba003c29402b73629b35cef7eab8daafea33733
|
| VirtualSize |
0x9d30
|
| VirtualAddress |
0x1000
|
| SizeOfRawData |
0x9e00
|
| PointerToRawData |
0x400
|
| PointerToRelocations |
0
|
| PointerToLineNumbers |
0
|
| NumberOfLineNumbers |
0
|
| NumberOfRelocations |
0
|
| Characteristics |
IMAGE_SCN_CNT_CODE
IMAGE_SCN_MEM_EXECUTE
IMAGE_SCN_MEM_READ
|
| Entropy |
6.63177
|
| MD5 |
1ee71d84f1c77af85f1f5c278f880572
|
| SHA1 |
7de911e50da81747314fc3485c1084d4ee50e6e7
|
| SHA256 |
cf4e6480022c8eb98f3e55bd2500d15af438fc8030ff45378d06f85667b21701
|
| SHA3 |
3b99c7e61fc4cbf760235841c472b86851e95cb909b0c9c25773658daace7f58
|
| VirtualSize |
0x250
|
| VirtualAddress |
0xb000
|
| SizeOfRawData |
0x400
|
| PointerToRawData |
0xa200
|
| PointerToRelocations |
0
|
| PointerToLineNumbers |
0
|
| NumberOfLineNumbers |
0
|
| NumberOfRelocations |
0
|
| Characteristics |
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
|
| Entropy |
2.75182
|
| MD5 |
d41d8cd98f00b204e9800998ecf8427e
|
| SHA1 |
da39a3ee5e6b4b0d3255bfef95601890afd80709
|
| SHA256 |
e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
|
| SHA3 |
a7ffc6f8bf1ed76651c14756a061d662f580ff4de43b49fa82d80a4b80f8434a
|
| VirtualSize |
0xe8c
|
| VirtualAddress |
0xc000
|
| SizeOfRawData |
0
|
| PointerToRawData |
0xa600
|
| PointerToRelocations |
0
|
| PointerToLineNumbers |
0
|
| NumberOfLineNumbers |
0
|
| NumberOfRelocations |
0
|
| Characteristics |
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
|
| MD5 |
bb5485bf968b970e5ea81292af2acdba
|
| SHA1 |
40a39d9e8c8cecd5356ab96745d82d2ebfe17cfb
|
| SHA256 |
d9ea6e80cc1edfdffa8d534a8c61448b19b74d683845b94ad6d9a543e5ceb8cf
|
| SHA3 |
09274dc071547ce3dc33528de99c9ad5a9eb119600e5a61b3127f74cde6dcfbf
|
| VirtualSize |
0x950
|
| VirtualAddress |
0xd000
|
| SizeOfRawData |
0xa00
|
| PointerToRawData |
0xa600
|
| PointerToRelocations |
0
|
| PointerToLineNumbers |
0
|
| NumberOfLineNumbers |
0
|
| NumberOfRelocations |
0
|
| Characteristics |
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
|
| Entropy |
4.43073
|
| MD5 |
d41d8cd98f00b204e9800998ecf8427e
|
| SHA1 |
da39a3ee5e6b4b0d3255bfef95601890afd80709
|
| SHA256 |
e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
|
| SHA3 |
a7ffc6f8bf1ed76651c14756a061d662f580ff4de43b49fa82d80a4b80f8434a
|
| VirtualSize |
0x8
|
| VirtualAddress |
0xe000
|
| SizeOfRawData |
0
|
| PointerToRawData |
0xb000
|
| PointerToRelocations |
0
|
| PointerToLineNumbers |
0
|
| NumberOfLineNumbers |
0
|
| NumberOfRelocations |
0
|
| Characteristics |
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
|
| MD5 |
9ba824905bf9c7922b6fc87a38b74366
|
| SHA1 |
f43ee83e6afa1c343ff6db68e13efde43471cbb6
|
| SHA256 |
ad44157821ba24c07dd44f66940dd75adee9d6919a0577c5a75aa502637dddaa
|
| SHA3 |
370eba5499bce03a18d462f5b9e6ee4598126f2a2243cc5fa1590c7c7245c5d7
|
| VirtualSize |
0x18
|
| VirtualAddress |
0xf000
|
| SizeOfRawData |
0x200
|
| PointerToRawData |
0xb000
|
| PointerToRelocations |
0
|
| PointerToLineNumbers |
0
|
| NumberOfLineNumbers |
0
|
| NumberOfRelocations |
0
|
| Characteristics |
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_SHARED
|
| Entropy |
0.204488
|
| MD5 |
d41d8cd98f00b204e9800998ecf8427e
|
| SHA1 |
da39a3ee5e6b4b0d3255bfef95601890afd80709
|
| SHA256 |
e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
|
| SHA3 |
a7ffc6f8bf1ed76651c14756a061d662f580ff4de43b49fa82d80a4b80f8434a
|
| VirtualSize |
0x8c4
|
| VirtualAddress |
0x10000
|
| SizeOfRawData |
0
|
| PointerToRawData |
0
|
| PointerToRelocations |
0
|
| PointerToLineNumbers |
0
|
| NumberOfLineNumbers |
0
|
| NumberOfRelocations |
0
|
| Characteristics |
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_SHARED
|
| MD5 |
74827b98ff0592f18ce39f0c59c529b1
|
| SHA1 |
042917e8f6e875b9e9d84598ad97af93e5281776
|
| SHA256 |
13bf25befc697095d7b9256fef191187932e64aae5600b2e038436a68a567ef4
|
| SHA3 |
6a30ac5321d3328bbe4d4c915e142593791964835813452a3caa823065fa53de
|
| VirtualSize |
0x17038
|
| VirtualAddress |
0x11000
|
| SizeOfRawData |
0x17200
|
| PointerToRawData |
0xb200
|
| PointerToRelocations |
0
|
| PointerToLineNumbers |
0
|
| NumberOfLineNumbers |
0
|
| NumberOfRelocations |
0
|
| Characteristics |
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_SHARED
|
| Entropy |
6.90211
|
| kernel32.dll |
DeleteCriticalSection
LeaveCriticalSection
EnterCriticalSection
InitializeCriticalSection
VirtualFree
VirtualAlloc
LocalFree
LocalAlloc
WideCharToMultiByte
TlsSetValue
TlsGetValue
MultiByteToWideChar
GetModuleHandleA
GetLastError
GetCommandLineA
WriteFile
SetFilePointer
SetEndOfFile
RtlUnwind
ReadFile
RaiseException
GetStdHandle
GetFileSize
GetSystemTime
GetFileType
ExitProcess
CreateFileA
CloseHandle
|
| user32.dll |
MessageBoxA
|
| oleaut32.dll |
VariantChangeTypeEx
VariantCopyInd
VariantClear
SysStringLen
SysAllocStringLen
|
| advapi32.dll |
RegQueryValueExA
RegOpenKeyExA
RegCloseKey
OpenProcessToken
LookupPrivilegeValueA
|
| kernel32.dll (#2) |
DeleteCriticalSection
LeaveCriticalSection
EnterCriticalSection
InitializeCriticalSection
VirtualFree
VirtualAlloc
LocalFree
LocalAlloc
WideCharToMultiByte
TlsSetValue
TlsGetValue
MultiByteToWideChar
GetModuleHandleA
GetLastError
GetCommandLineA
WriteFile
SetFilePointer
SetEndOfFile
RtlUnwind
ReadFile
RaiseException
GetStdHandle
GetFileSize
GetSystemTime
GetFileType
ExitProcess
CreateFileA
CloseHandle
|
| user32.dll (#2) |
MessageBoxA
|
| comctl32.dll |
InitCommonControls
|
| advapi32.dll (#2) |
RegQueryValueExA
RegOpenKeyExA
RegCloseKey
OpenProcessToken
LookupPrivilegeValueA
|
| Type |
RT_ICON
|
| Language |
English - United States
|
| Codepage |
Latin 1 / Western European
|
| Size |
0x2e8
|
| TimeDateStamp |
1980-Jan-01 00:00:00
|
| Entropy |
4.24899
|
| MD5 |
0af5c5f95dd7be29aa8a9ad8a33319d7
|
| SHA1 |
fe02f0e5de83a6b644cba9fbbc4e5b70d2902d1a
|
| SHA256 |
7bdb46c67084b705effaaa12a6a3afdbc62eac40833ffe3245824941a69ea279
|
| SHA3 |
7131f6f6e14c7ae3c4f80236007fdfef516c013a52366ffa60ad1ba0c953d82f
|
| Type |
RT_ICON
|
| Language |
English - United States
|
| Codepage |
Latin 1 / Western European
|
| Size |
0x128
|
| TimeDateStamp |
1980-Jan-01 00:00:00
|
| Entropy |
3.9112
|
| MD5 |
66f1c492cccdef2591855dfe1e7a70d5
|
| SHA1 |
5e24051e3ea7901fa1faf53cb61469a47811e369
|
| SHA256 |
7d36f98ae336a493e8195f446453beb26210e7615605d19ecb0c7267b9acc1c5
|
| SHA3 |
ab48830fccb96a18657930a7501cec40581eba68b417095bc83a8d89e606e99a
|
| Type |
RT_ICON
|
| Language |
English - United States
|
| Codepage |
Latin 1 / Western European
|
| Size |
0xea8
|
| TimeDateStamp |
1980-Jan-01 00:00:00
|
| Entropy |
5.47257
|
| MD5 |
3f10ba678603e8931300911f55b90bb9
|
| SHA1 |
6310f223f3f9b587f9a011ce57f139042c3290a4
|
| SHA256 |
7ac597bad185d17af1b6c3e14629fedade011b8cac42a400ce69f8eeb9e3adc4
|
| SHA3 |
95a09e8aa57624abb1acde904ca286b6a0bd5a8a8453fcc1fa53301733709c06
|
| Type |
RT_ICON
|
| Language |
English - United States
|
| Codepage |
Latin 1 / Western European
|
| Size |
0x8a8
|
| TimeDateStamp |
1980-Jan-01 00:00:00
|
| Entropy |
5.94423
|
| MD5 |
4d43e37847f5e9eee17f71af6f5a1e89
|
| SHA1 |
862516ba77a7dba348780148600f341bf5f426df
|
| SHA256 |
4de9d054b307214b0a92da25e1811b24976d96ab12d4ac7cbc66712d2e10c0c5
|
| SHA3 |
6023d504de067bd6c3b0d9a9224f4728123139bf54cdd9a15ea8f6b862fa4842
|
| Type |
RT_ICON
|
| Language |
English - United States
|
| Codepage |
Latin 1 / Western European
|
| Size |
0x568
|
| TimeDateStamp |
1980-Jan-01 00:00:00
|
| Entropy |
5.4349
|
| MD5 |
9359f081fd3fa2470dbe6d3b8995783f
|
| SHA1 |
c43eb95454f8a90541cfc9f178b3dff856956a74
|
| SHA256 |
589f3b3757efb5fe929be032197861dc0019d4d04b5b92b1118af3c02d5dbedb
|
| SHA3 |
162576d1302b84a38eb95e0a8c4d6b0d4d31d01c8e7020472fb8730c6dc86815
|
| Type |
RT_ICON
|
| Language |
English - United States
|
| Codepage |
Latin 1 / Western European
|
| Size |
0xb826
|
| TimeDateStamp |
1980-Jan-01 00:00:00
|
| Entropy |
7.97876
|
| Detected Filetype |
PNG graphic file
|
| MD5 |
2037e0657706d3ed1330ad36dbd1c6be
|
| SHA1 |
3f1a25edd4ad99b00c2a1a0147319afd151ad75a
|
| SHA256 |
a068b3262a4094004070c99f70f3ac9a4b582e91b1e5669833b68e9c67490600
|
| SHA3 |
1b6b909303e343ad9f7805729ece217ff4bdb0c774c432a1fca137a3a068544d
|
| Type |
RT_ICON
|
| Language |
English - United States
|
| Codepage |
Latin 1 / Western European
|
| Size |
0x4228
|
| TimeDateStamp |
1980-Jan-01 00:00:00
|
| Entropy |
4.46452
|
| MD5 |
4fc22ad9a2dfd45f1c799aeda476dcae
|
| SHA1 |
f133e5cd33c3579bb7948e18730f451099f46e4f
|
| SHA256 |
ea2088c2291fc1230c98b36c58cefee0a2955341cafa2437c69742370ea64ba5
|
| SHA3 |
a6f3e098e8aeca6ad94fc3fa244b12dfecba600289c82bbf2d1706165cff30a0
|
| Type |
RT_ICON
|
| Language |
English - United States
|
| Codepage |
Latin 1 / Western European
|
| Size |
0x25a8
|
| TimeDateStamp |
1980-Jan-01 00:00:00
|
| Entropy |
4.7926
|
| MD5 |
62794f294c4eb26a4d2ee240068bcc01
|
| SHA1 |
8236b6567f0286a18f87a320b4814f883d745724
|
| SHA256 |
cbaa533b5f196550dfdb6619ceeffef85f1ef549ef0e2623ff885998aef52f22
|
| SHA3 |
7823e27b8321108d183fc75471d89d78b097725a0a76e383f5d6fdecff6a20b2
|
| Type |
RT_ICON
|
| Language |
English - United States
|
| Codepage |
Latin 1 / Western European
|
| Size |
0x10a8
|
| TimeDateStamp |
1980-Jan-01 00:00:00
|
| Entropy |
5.39065
|
| MD5 |
855052b7e09e31ea19c00a61bf8d3784
|
| SHA1 |
f316e76f82fe18b4cc87483e1261e724d71ecd3d
|
| SHA256 |
e91baa0664d35d69948d927375b0f288e65600d176d3e8e83083e03324f32c04
|
| SHA3 |
e61a783a962b2f072e0ae10837c366e9600952760854241c33612bc5b7b259ec
|
| Type |
RT_ICON
|
| Language |
English - United States
|
| Codepage |
Latin 1 / Western European
|
| Size |
0x468
|
| TimeDateStamp |
1980-Jan-01 00:00:00
|
| Entropy |
5.9698
|
| MD5 |
57773953104c32fdc6ef4dbe6bf6caf5
|
| SHA1 |
1393a5a1874e327721528d816ba224b93e19a565
|
| SHA256 |
d5b81ab78f7a4fbd9a342e8981d76bd0316d658f8c018532a8a61381d6a71c29
|
| SHA3 |
74115fb43c7d3b981db9d45baf83b581212727e72ca38cc7dc86ce4661b680c8
|
| Type |
RT_STRING
|
| Language |
UNKNOWN
|
| Codepage |
Latin 1 / Western European
|
| Size |
0x2f2
|
| TimeDateStamp |
1980-Jan-01 00:00:00
|
| Entropy |
3.21823
|
| MD5 |
bbf4b644f9dd284b35eb31573d0df2f7
|
| SHA1 |
4f9885ae629e83464e313af5254ef86f01accd0b
|
| SHA256 |
2c0d32398e3c95657a577c044cc32fe24fa058d0c32e13099b26fd678de8354f
|
| SHA3 |
ebed2e4a929600c1460761d462143feb092840986b31c9748d3aeb8174d4205e
|
| Type |
RT_STRING
|
| Language |
UNKNOWN
|
| Codepage |
Latin 1 / Western European
|
| Size |
0x30c
|
| TimeDateStamp |
1980-Jan-01 00:00:00
|
| Entropy |
3.31515
|
| MD5 |
ac2a0551cb90f91d779ee8622682dfb1
|
| SHA1 |
ff0db7d2f48d85ceb3539b21ebe9d0ca3443f1da
|
| SHA256 |
840989e0a92f2746ae60b8e3efc1a39bcca17e82df3634c1643d76141fc75bb3
|
| SHA3 |
58a85f5c53df73aa79e5f5a36aa151ca0d9da4d450ebc2975a3ee827b46342a5
|
| Type |
RT_STRING
|
| Language |
UNKNOWN
|
| Codepage |
Latin 1 / Western European
|
| Size |
0x2ce
|
| TimeDateStamp |
1980-Jan-01 00:00:00
|
| Entropy |
3.25024
|
| MD5 |
c99b474c52df3049dfb38b5308f2827d
|
| SHA1 |
7375e693629ce6bbd1a0419621d094bcd2c67bb7
|
| SHA256 |
26bda4da3649a575157a6466468a0a86944756643855954120fd715f3c9c7f78
|
| SHA3 |
c6013febd14dd876e3b81111ec17dd2724dbf4147b0ad7be9d03259bcb59fef3
|
| Type |
RT_STRING
|
| Language |
UNKNOWN
|
| Codepage |
Latin 1 / Western European
|
| Size |
0x68
|
| TimeDateStamp |
1980-Jan-01 00:00:00
|
| Entropy |
2.86149
|
| MD5 |
aec4e28ea9db1361160cde225d158108
|
| SHA1 |
249013a10cde021c713ba2dc8912f9e05be35735
|
| SHA256 |
d786490af7fe66042fb4a7d52023f5a1442f9b5e65d067b9093d1a128a6af34c
|
| SHA3 |
a067c4d88d719ed8d568951acb776bd798b691a8b153f8d94ba0574ede1fbf4c
|
| Type |
RT_STRING
|
| Language |
UNKNOWN
|
| Codepage |
Latin 1 / Western European
|
| Size |
0xb4
|
| TimeDateStamp |
1980-Jan-01 00:00:00
|
| Entropy |
3.20731
|
| MD5 |
c76a8843204c0572bca24ada35abe8c7
|
| SHA1 |
066052030d0a32310da8cb5a51d0590960a65f32
|
| SHA256 |
00a0794f0a493c167f64ed8b119d49bdc59f76bb35e5c295dc047095958ee2fd
|
| SHA3 |
07523cf88b3803ea41acfeb3c9c0c4b5b4b9fb6f9a3232802491d8de1b6c9166
|
| Type |
RT_STRING
|
| Language |
UNKNOWN
|
| Codepage |
Latin 1 / Western European
|
| Size |
0xae
|
| TimeDateStamp |
1980-Jan-01 00:00:00
|
| Entropy |
3.04592
|
| MD5 |
4bd4f3f6d918ba49d8800ad83d277a86
|
| SHA1 |
1f5e4c73965fea1d1f729efbe7568dcd081a2168
|
| SHA256 |
34973a8a33b90ec734bd328198311f579666d5aeb04c94f469ebb822689de3c3
|
| SHA3 |
2d01c56a5bf0b390addf4fb5b6ae02f9a64bd03ffd300d3763615bbb8ec911fe
|
| Type |
RT_RCDATA
|
| Language |
UNKNOWN
|
| Codepage |
Latin 1 / Western European
|
| Size |
0x2c
|
| TimeDateStamp |
1980-Jan-01 00:00:00
|
| Entropy |
4.74008
|
| MD5 |
b930a415797d152faebc24bf224216ce
|
| SHA1 |
83401e99e853db74fa38502d56f9d28a66686110
|
| SHA256 |
492feea7007c3f9b5bf4bb4ef4579bd01e63719de4baf13a7acc21fdebbd8743
|
| SHA3 |
42995a3444a9eb1512934804f44b66c1ce45dba6707bbace800ca4f853a3c88d
|
| Type |
RT_GROUP_ICON
|
| Language |
English - United States
|
| Codepage |
Latin 1 / Western European
|
| Size |
0x92
|
| TimeDateStamp |
1980-Jan-01 00:00:00
|
| Entropy |
2.93093
|
| Detected Filetype |
Icon file
|
| MD5 |
75ac17495b71a1b647dbaeba03ce6dd5
|
| SHA1 |
2318f048f4d26542832b0053ef712bbdcce02973
|
| SHA256 |
da9ec866e8e9d5f3a3b289c5011a00dc1124f7af557e59612b99fb165551b21c
|
| SHA3 |
3b1a93552ba0d9b29c62fb25d2ca2c0a23139aa44ba7dba241f2d77d07ce1477
|
| Type |
RT_VERSION
|
| Language |
English - United States
|
| Codepage |
Latin 1 / Western European
|
| Size |
0x4f4
|
| TimeDateStamp |
1980-Jan-01 00:00:00
|
| Entropy |
2.66217
|
| MD5 |
2625c86db7e494f408f2e5ed3d5970dd
|
| SHA1 |
ee40c90fa46ffbcd0815383306a79d5fc714fac2
|
| SHA256 |
77d0da5247fa3f3fc27b72f0d5167dcddca19bb3dc0c50b42ea7b49ee585d0b3
|
| SHA3 |
f96ca22896bf17901bb513c442e9e2bbe3032c9b7cd4eb06247a4ce94a81a4de
|
| Type |
RT_MANIFEST
|
| Language |
English - United States
|
| Codepage |
Latin 1 / Western European
|
| Size |
0x5a4
|
| TimeDateStamp |
1980-Jan-01 00:00:00
|
| Entropy |
5.08452
|
| MD5 |
3005dd5c3434302be2a8f0b26f2ddb18
|
| SHA1 |
e81221b09c9012b27b5aaf513a5dd74b08be9f6d
|
| SHA256 |
5c0fe2a5fc29f15655d1cb9adcd9eefce554b133ca5715b010a014c9dfef5bd0
|
| SHA3 |
18b2f14622c4985238f34e40b91637553c9711514c2cdc04722d6f75b987c0de
|
| '%s' is not a valid integer value |
| '%s' is not a valid floating point value |
| '%s' is not a valid date |
| '%s' is not a valid time |
| '%s' is not a valid date and time |
| Invalid argument to time encode |
| Invalid argument to date encode |
| Out of memory |
| I/O error %d |
| File not found |
| Invalid filename |
| Too many open files |
| File access denied |
| Read beyond end of file |
| Disk full |
| Invalid numeric input |
| Division by zero |
| Range check error |
| Integer overflow |
| Invalid floating point operation |
| Floating point division by zero |
| Floating point overflow |
| Floating point underflow |
| Invalid pointer operation |
| Invalid class typecast |
| Access violation at address %p. %s of address %p |
| Stack overflow |
| Control-C hit |
| Privileged instruction |
| Operation aborted |
| Exception %s in module %s at %p. |
| %s%s |
| Application Error |
| Format '%s' invalid or incompatible with argument |
| No argument for format '%s' |
| Invalid variant type conversion |
| Invalid variant operation |
| Variant method calls not supported |
| Read |
| Write |
| Format result longer than 4096 characters |
| Format string too long |
| Error creating variant array |
| Variant is not an array |
| Variant array index out of bounds |
| External exception %x |
| Jan |
| Feb |
| Mar |
| Apr |
| May |
| Jun |
| Jul |
| Aug |
| Sep |
| Oct |
| Nov |
| Dec |
| January |
| February |
| March |
| April |
| May |
| June |
| July |
| August |
| September |
| October |
| November |
| December |
| Sun |
| Mon |
| Tue |
| Wed |
| Thu |
| Fri |
| Sat |
| Sunday |
| Monday |
| Tuesday |
| Wednesday |
| Thursday |
| Friday |
| Saturday |
| Signature |
0xfeef04bd
|
| StructVersion |
0x10000
|
| FileVersion |
0.0.0.0
|
| ProductVersion |
0.0.0.0
|
| FileFlags |
(EMPTY)
|
| FileOs |
VOS_DOS_WINDOWS32
VOS_NT_WINDOWS32
VOS__WINDOWS32
|
| FileType |
VFT_APP
|
| Language |
UNKNOWN
|
| Comments |
This installation was built with Inno Setup.
|
| CompanyName |
A-Developer1412
|
| FileDescription |
HTTP Proxy Injector Setup
|
| FileVersion (#2) |
|
| LegalCopyright |
|
| ProductName |
HTTP Proxy Injector
|
| ProductVersion (#2) |
0.0.0.8
|
| Resource LangID |
English - United States
|
| StartAddressOfRawData |
0x40e000
|
| EndAddressOfRawData |
0x40e008
|
| AddressOfIndex |
0x40c3d0
|
| AddressOfCallbacks |
0x40f010
|
| SizeOfZeroFill |
0
|
| Characteristics |
IMAGE_SCN_TYPE_REG
|
| Callbacks |
(EMPTY)
|
[*] Warning: directory 5 has a size of 0! This PE may have been manually crafted!
[!] Error: Could not reach the requested directory (offset=0x0).
[*] Warning: Section BSS has a size of 0!
[*] Warning: Section .tls has a size of 0!
[*] Warning: Section .reloc has a size of 0!